Physical path Leakage exists in Western Bridge Cobub Razor 0.8.0 via an invalid channel_name parameter to /index.php?/manage/channel/addchannel or a direct request to /export.php.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://github.com/Kyhvedn/CVE_Description/blob/master/Cobub_Razor_0.8.0_physical_path_leakage.md | issue tracking exploit third party advisory |
https://github.com/cobub/razor/issues/162 | third party advisory exploit |
https://www.exploit-db.com/exploits/44495/ | exploit vdb entry third party advisory |