CVE-2021-36233

Publication date

2021-08-31 17:50:00

Family

mitre

State

PUBLISHED

Description

The function AdminGetFirstFileContentByFilePath in MIK.starlight 7.9.5.24363 allows (by design) an authenticated attacker to read arbitrary files from the filesystem by specifying the file path.