Security Advisory

CVE-2019-17199

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-10-05 19:04:23
Last updated 2024-08-05 01:33:17
Assigner mitre
State PUBLISHED

Description

www/getfile.php in WPO WebPageTest 19.04 on Windows allows Directory Traversal (for reading arbitrary files) because of an unanchored regular expression, as demonstrated by the a.jpg.. substring.