CVE-2018-14573

CVE-2018-14573

A Local File Inclusion (LFI) vulnerability exists in the Web Interface API of TightRope Media Carousel Digital Signage before 7.3.5. The RenderingFetch API allows for the downloading of arbitrary files through the use of directory traversal sequences, aka CSL-1683.

Source: CVE-2018-14573

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다