Products

Showing 1 vulnerability on this page

Signals CISA KEV Ransomware Nuclei
SPON Communications vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

SPON IP Network Intercom System rj_get_token.php Arbitrary File Read

SPON IP Network Broadcast System, a digital audio transmission platform developed by SPON Communications, contains an arbitrary file read vulnerability in the rj_get_token.php endpoint. The flaw arises from insufficient input validation on the jsondata[url] parameter, which allows attackers to perform directory traversal and access sensitive files on the server. An unauthenticated remote attacker can exploit this vulnerability by sending a crafted POST request to read arbitrary files, potentiall

CWE-22Aug 27, 2025
CVSS8.7v4.0EPSS1.06%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX