Dominik Vitt

1 exploit Active since Sep 2018
CVE-2018-16397 WRITEUP MEDIUM WRITEUP
LimeSurvey < 3.14.7 - Authenticated Arbitrary File Read via File Upload Question
In LimeSurvey before 3.14.7, an admin user can leverage a "file upload" question to read an arbitrary file,
CVSS 4.9