ZeroHour

CVE-2021-45789

PoC
CVSS 3.1
6.5 medium
EPSS
<1%p57
Published
()
Modified
Description

An arbitrary file read vulnerability was found in Metersphere v1.15.4, where authenticated users can read any file on the server via the file download function.

Vendors
metersphere
Products
metersphere
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.