CVE-2018-7668

Publication date

2018-03-05 07:00:00

Family

mitre

State

PUBLISHED

Description

TestLink through 1.9.16 allows remote attackers to read arbitrary attachments via a modified ID field to /lib/attachments/attachmentdownload.php.