Web Vulnerability Report

Vulnerability Index
ID EDB-ID-50163
CVSS 3.0 N/A
Cloudbric Score
?
Low
Cloudbric Detection Yes
Vulnerability Type File Download
Published Date 2021-07-29
Updated Date 2021-09-16
Vendor 1.21
Description The application suffers from an unauthenticated arbitrary file download vulnerability. Input passed through the fileName parameter through downloads endpoint is not properly verified before being used to download files. This can be exploited to disclose the contents of arbitrary and sensitive files through directory traversal attacks.
Reference N/A
URL Link
Threat Index Table
ID Description Vulnerability Type
Cloudbric Score
?
Updated Date Detection

To receive weekly updates on new vulnerabilities added to Threat Index

Subscribe Now