CVE-2018-10122
PoC —CVSS 3.0
7.5 high
EPSS
2%p81
Published
()
Modified
Description
QingDao Nature Easy Soft Chanzhi Enterprise Portal System (aka chanzhieps) pro1.6 allows remote attackers to read arbitrary files via directory traversal sequences in the pathname parameter to www/file.php.
- Vendors
- chanzhi
- Products
- chanzhi
- Weakness
- CWE-22
- Vector
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.