CVE-2017-16894 | Laravel Framework up to 5.5.21 Permission /.env writeNewEnvironmentFileWith Password information disclosure (ID 153641 / EDB-47129)
A vulnerability was found in Laravel Framework up to 5.5.21. It has been classified as problematic. This affects the function writeNewEnvironmentFileWith of the file /.env of the component Permission. The manipulation as part of Password leads to information disclosure (Password).
This vulnerability is uniquely identified as CVE-2017-16894. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.