Security Advisory

CVE-2019-16123

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-09-09 01:00:56
Last updated 2024-08-05 01:10:41
Assigner mitre
State PUBLISHED

Description

In Kartatopia PilusCart 1.4.1, the parameter filename in the file catalog.php is mishandled, leading to ../ Local File Disclosure.