Description
A downloadFile.php download_file path traversal vulnerability in rConfig through 3.9.3 allows attackers to list files in arbitrary folders and potentially download files. NOTE: the discoverer later reported that there was not a "fully working exploit.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Fri, 15 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-15T14:50:48.385Z
Reserved: 2019-11-28T00:00:00.000Z
Link: CVE-2019-19372
Updated: 2024-08-05T02:16:47.128Z
Status : Modified
Published: 2019-11-28T15:15:10.963
Modified: 2024-11-21T04:34:39.820
Link: CVE-2019-19372
No data.
OpenCVE Enrichment
No data.
Weaknesses