Vulnerabilities
CVE-2020-37104 - ASTPP 4.0.1 VoIP Billing - Database Backup Download
CVE ID : CVE-2020-37104 Published : Feb. 11, 2026, 8:49 p.m. | 39 minutes ago Description : ASTPP 4.0.1 contains an information disclosure vulnerability that allows unauthenticated attackers to download database backup files by predicting backup filename patterns. Attackers can generate a list of 6-digit PIN combinations and fuzz the backup download URL to exfiltrate sensitive database information from the /database_backup/ directory. Severity: 8.7 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE Details
Impact:
information disclosure