ABB Cylon Aspect version 3.08.02 suffers from an authenticated arbitrary file disclosure vulnerability. Input passed through the logFile GET parameter via the logYumLookup.php script is not properly verified before being used to download log files. This can be exploited to disclose the contents of arbitrary and sensitive files via directory...
🛡️ VERIFIED CYBER INTELLIGENCE ID: #2377069
💾 ABB Cylon Aspect 3.08.02 logYumLookup.php Authenticated File Disclosure
⏱️ vor 646d 15h (24.10.2024 um 15:44 Uhr) 📂 💾 IT Security Tools 📡 Feed 🔗 Quelle: packetstormsecurity.com