CVE-2021-36233
31.08.2021, 18:15
The function AdminGetFirstFileContentByFilePath in MIK.starlight 7.9.5.24363 allows (by design) an authenticated attacker to read arbitrary files from the filesystem by specifying the file path.Enginsight
Vendor | Product | Version |
---|---|---|
unit4 | mik.starlight | 7.9.5.24363 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration