CVE

Id
70168  
CVE No.
CVE-2014-2873  
Status
Candidate  
Description
PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 does not require authentication for access to log files, which allows remote attackers to obtain sensitive server information by using a predictable name in a request for a file.  
Phase
Assigned (20140415)  
Votes
None (candidate not yet proposed)  
Comments