OS4Ed OpenSIS Community 8.0 is vulnerable to a local file inclusion vulnerability in Modules.php (modname parameter), which can disclose arbitrary file from the server's filesystem as long as the application has access to the file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2021-09-29T11:59:07

Updated: 2024-08-04T02:51:06.297Z

Reserved: 2021-09-07T00:00:00

Link: CVE-2021-40651

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-09-29T12:15:07.317

Modified: 2021-10-07T15:33:47.493

Link: CVE-2021-40651

cve-icon Redhat

No data.