### [CVE-2008-5678](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5678) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description Fretwell-Downing Informatics (FDI) OLIB7 WebView 2.5.1.1 allows remote authenticated users to obtain sensitive information from files via the infile parameter to the default URI under cgi/, as demonstrated by the (1) get_settings.ini, (2) setup.ini, and (3) text.ini files. ### POC #### Reference - http://securityreason.com/securityalert/4790 - https://www.exploit-db.com/exploits/6653 #### Github No PoCs found on GitHub currently.