Required CVE Record Information
Description
rConfig 3.9.6 is affected by a Local File Disclosure vulnerability. An authenticated user may successfully download any file on the server.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- http://rconfig.com x_transferred
- https://github.com/mrojz/rconfig-exploit/blob/main/CVE-2021-29006-POC.py x_transferred