Security Advisory

CVE-2018-18434

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-10-17 05:00:00
Last updated 2024-08-05 11:08:21
Assigner mitre
State PUBLISHED

Description

An issue was discovered in litemall 0.9.0. Arbitrary file download is possible via ../ directory traversal in linlinjava/litemall/wx/web/WxStorageController.java in the litemall-wx-api component.