CVE-2017-17793

CVE-2017-17793

Information Disclosure vulnerability in creer_fichier_zip in admin/maintenance.php in BlogoText through 3.7.6 allows remote attackers to defeat a filename-randomization protection mechanism, and read backup archives on Windows servers, by providing the archiv~1.zip name (aka an 8.3 filename).

Source: CVE-2017-17793

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다