ZeroHour

CVE-2016-1242

CVSS 3.0
4.4 medium
EPSS
2%p78
Published
()
Modified
Description

file_open in Tryton before 3.2.17, 3.4.x before 3.4.14, 3.6.x before 3.6.12, 3.8.x before 3.8.8, and 4.x before 4.0.4 allows remote authenticated users with certain permissions to read arbitrary files via the name parameter or unspecified other vectors.

Vendors
tryton
Products
tryton
Weakness
CWE-200
Vector
CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.