CATIE Web - Version 20.04.0
bishopfox.com | blog | #web-security | #information-disclosure | #vulnerability | #advisory | #local-file-disclosure | #catie-web
Summary
Four local file disclosure flaws in CATIE Web 20.04.0 let unauthenticated attackers read any host file, including source code and password hashes, as the service ran as root.
- Published
- Collected
Skip to content