CVE-2020-10387

Publication date

2020-03-12 13:03:41

Family

mitre

State

PUBLISHED

Description

Path Traversal in admin/download.php in Chadha PHPKB Standard Multi-Language 9 allows remote attackers to download files from the server using a dot-dot-slash sequence (../) via the GET parameter file.