Mojira Archive
BDS-18387

Critcal Information Disclosure via Server.txt on google

Hello Team during my testing i discovered your server.txt file is available on google which contain lot's of information like internal path etc.. so any one can read this file he/she can perform lots' of attackΒ 

Β 

Vulnerable URL: https://piston-data.mojang.com/v1/objects/2c23942beb9a74e6da5c960aeeeee7b39c1632ee/server.txt

Β 

Attachments1

mojang_server.PNG
mojang_server.PNG

hacktube5

Comments2

Hi

Does this issue still occur after updating to 1.20.15?

This ticket will automatically reopen when you reply.

Cleaning up old tickets: This ticket had been set to 'Awaiting Response', but has not received a response from the reporter (~3 months+) so is being closed as Incomplete. If you feel this is still a valid issue then please comment, or create a new ticket following the Issue Guidelines which includes steps to reproduce the problem.

Quick Links:
πŸ““ Issue Guidelines – πŸ’¬ Mojang Support – πŸ“§ Suggestions – πŸ“– Minecraft Wiki

History3

Maciej Piornik

Resolution: Unresolved β†’ Awaiting Response

[MCQA] Kinga Izdebska

Resolution: Awaiting Response β†’ Unresolved

[MCQA] Kinga Izdebska

Resolution: Unresolved β†’ Incomplete

Incomplete
hacktube5
0
0
Unconfirmed
1.19.80