Update and rename orbiteam-bscw-server-unauthenticated-lfi.yaml to vulnerabilities/other/orbiteam-bscw-server-lfi.yaml

patch-1
Prince Chaddha 2022-06-10 18:37:39 +05:30 committed by GitHub
parent 286e7d2410
commit a44e87a683
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 4 additions and 3 deletions

View File

@ -1,12 +1,13 @@
id: orbiteam-bscw-server-unauthenticated-lfi
id: orbiteam-bscw-server-lfi
info:
name: OrbiTeam BSCW Server - Unauthenticated LFI
author: 0x_Akoko
severity: high
description: OrbiTeam BSCW Server versions 5.0.x, 5.1.x, 5.2.4 and below, 7.3.x and below, and 7.4.3 and below suffer from path traversal
description: |
OrbiTeam BSCW Server versions 5.0.x, 5.1.x, 5.2.4 and below, 7.3.x and below, and 7.4.3 and below suffer from path traversal
reference:
- https://packetstormsecurity.com/files/165156/OrbiTeam-BSCW-Server-XSS-LFI-User-Enumeration.html
tags: bscw,orbiteam,lfi
tags: bscw,orbiteam,lfi,unauth
requests:
- method: GET