CVE-2018-19226
12.11.2018, 20:29
An issue was discovered in LAOBANCMS 2.0. It allows remote attackers to list .txt files via a direct request for the /data/0/admin.txt URI.Enginsight
Vendor | Product | Version |
---|---|---|
laobancms | laobancms | 2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration