Description

A sensitive information disclosure vulnerability exists in the error handling component of ATISoluciones CIGES Application version 2.15.6 and earlier. When certain unexpected conditions trigger unhandled exceptions, the application returns detailed error messages and stack traces to the client. This may expose internal filesystem paths, SQL queries, database connection details, or environment configuration data to remote unauthenticated attackers. This issue allows information gathering and reconnaissance but does not enable direct system compromise.

INFO

Published Date :

2025-11-24T07:30:49.545Z

Last Modified :

2025-11-24T13:47:44.911Z

Source :

ATIS
AFFECTED PRODUCTS

The following products are affected by CVE-2025-13596 vulnerability.

Vendors Products
Atisoluciones
  • Ciges
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-13596.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability