packetstormsecurity.com
http://packetstormsecurity.com/files/155324/Xfilesharing-2.5.1-Local-File-Inclusion-Shell-Upload.html CVE-2019-18951
HIGH
Xfilesharing 2.5.1 - Arbitrary File Upload
Record summary
CVE-2019-18951 has a selected CVSS score of 7.5 (high); EIP currently links 1 catalogued exploit.
Description
SibSoft Xfilesharing through 2.5.1 allows op=page&tmpl=../ directory traversal to read arbitrary files.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBXfilesharing 2.5.1 - Arbitrary File UploadExploitDB exploitby Noman RiffatNot analyzed1 file
References
3gist.github.com
https://gist.github.com/pak0s/af9f640170aed335fdf6d110d468dbce nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-18951