Security Advisory

CVE-2019-12464

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-09-09 13:04:19
Last updated 2024-08-04 23:17:40
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in LibreNMS 1.50.1. An authenticated user can perform a directory traversal attack against the /pdf.php file with a partial filename in the report parameter, to cause local file inclusion resulting in code execution.