mirror of
https://github.com/0xMarcio/cve.git
synced 2025-12-30 04:49:42 +00:00
19 lines
781 B
Markdown
19 lines
781 B
Markdown
### [CVE-2008-5678](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5678)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Fretwell-Downing Informatics (FDI) OLIB7 WebView 2.5.1.1 allows remote authenticated users to obtain sensitive information from files via the infile parameter to the default URI under cgi/, as demonstrated by the (1) get_settings.ini, (2) setup.ini, and (3) text.ini files.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- http://securityreason.com/securityalert/4790
|
|
- https://www.exploit-db.com/exploits/6653
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|