Описание
Incorrect privileges management and insufficient path filtering allow to read arbitrary file on the server via the cpdavd attachment download endpoints.
Incorrect privileges management and insufficient path filtering allow to read arbitrary file on the server via the cpdavd attachment download endpoints.
Связанные уязвимости
CVSS3: 8.6
nvd
3 месяца назад
Incorrect privileges management and insufficient path filtering allow to read arbitrary file on the server via the cpdavd attachment download endpoints.
CVSS3: 8.6
fstec
4 месяца назад
Уязвимость службы cpdavd панелей управления веб-хостингом cPanel и WordPress Squared, панели администрирования WebHost Manager, позволяющая нарушителю читать произвольные файлы