CRITICAL
onefilecms.php in OneFileCMS through 2017-10-08 might allow attackers to read arbitrary files via the i and f parameters, as demonstrated by ?i=etc/&f=passwd&p=raw_view for the /etc/passwd file
Published Jul 3, 2018
9.8
CRITICALCVSS 3.0
EPSS 1.43%
Description
Affected products
Remediation
References (1)
Change history (0)
No recorded changes yet.