CVE-2019-16123
09.09.2019, 02:15
In Kartatopia PilusCart 1.4.1, the parameter filename in the file catalog.php is mishandled, leading to ../ Local File Disclosure.
| Vendor | Product | Version |
|---|---|---|
| kartatopia | piluscart | 𝑥 ≤ 1.4.1 |
𝑥
= Vulnerable software versions