PartKeepr versions up to v1.4.0, loads attachments using a URL while creating a part and allows the use of the 'file://' URI scheme, allowing an authenticated user to read local files.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://fluidattacks.com/advisories/hendrix/ | third party advisory exploit |
https://github.com/partkeepr/PartKeepr/issues/1229 | issue tracking exploit third party advisory |