ZeroHour

CVE-2018-10122

PoC
CVSS 3.0
7.5 high
EPSS
2%p81
Published
()
Modified
Description

QingDao Nature Easy Soft Chanzhi Enterprise Portal System (aka chanzhieps) pro1.6 allows remote attackers to read arbitrary files via directory traversal sequences in the pathname parameter to www/file.php.

Vendors
chanzhi
Products
chanzhi
Weakness
CWE-22
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.