cve/2021/CVE-2021-30048.md
2024-06-18 02:51:15 +02:00

729 B

CVE-2021-30048

Description

Directory Traversal in the fileDownload function in com/java2nb/common/controller/FileController.java in Novel-plus (小说精品屋-plus) 3.5.1 allows attackers to read arbitrary files via the filePath parameter.

POC

Reference

Github

No PoCs found on GitHub currently.