Impact
InnoShop 0.9.2 enables an authenticated administrator with files_create permission to read arbitrary server files by providing file:// or php:// stream wrappers to the AI Core MCP file_upload tool. The application uses file_get_contents on the supplied path and then stores the retrieved contents on the public media disk, exposing sensitive data such as the .env file, which contains the application key and database credentials. This flaw compromises confidentiality of server files and can lead to credential theft.
Affected Systems
The vulnerability affects the innocommerce InnoShop application, specifically version 0.9.2. Any deployment of this version that has administrators granted the files_create permission is susceptible to exploitation.
Risk and Exploitability
The CVSS v3.1 base score of 5.9 indicates a moderate risk profile. The EPSS score is currently unavailable, and the vulnerability is not listed in the CISA Known Exploited Vulnerabilities catalog, suggesting limited publicly observed exploitation. Because the flaw requires authenticated access, an attacker must possess administrator credentials or a privileged role with files_create permission; from there, the local file read can be performed with no additional network traversal or privilege escalation.
OpenCVE Enrichment