Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wv58-fx9p-fw8m

Опубликовано: 16 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 7.1

Описание

Local File Inclusion vulnerability in Ready's attachment upload panel allows low privileged user to provide link to a local file using the file:// protocol thus allowing the attacker to read content of the file. This vulnerability can be use to read content of system files.

Local File Inclusion vulnerability in Ready's attachment upload panel allows low privileged user to provide link to a local file using the file:// protocol thus allowing the attacker to read content of the file. This vulnerability can be use to read content of system files.

EPSS

Процентиль: 25%
0.00088
Низкий

7.1 High

CVSS4

Дефекты

CWE-552

Связанные уязвимости

nvd
10 месяцев назад

Local File Inclusion vulnerability in Ready's attachment upload panel allows low privileged user to provide link to a local file using the file:// protocol thus allowing the attacker to read content of the file. This vulnerability can be use to read content of system files.

EPSS

Процентиль: 25%
0.00088
Низкий

7.1 High

CVSS4

Дефекты

CWE-552