CVE

CVE-2017-18354

CVE-2017-18354

Rendertron 1.0.0 allows for alternative protocols such as โ€˜file://โ€™ introducing a Local File Inclusion (LFI) bug where arbitrary files can be read by a remote attacker.

Source: CVE-2017-18354

Exit mobile version