Cybonet - PineApp Mail Relay Local File Inclusion. Attacker can send a request to : /manage/mailpolicymtm/log/eml_viewer/email.content.body.php?filesystem_path=ENCDODED PATH and by doing that, the attacker can read Local Files inside the server.
Solution:
Link | Tags |
---|---|
https://www.gov.il/en/departments/faq/cve_advisories | third party advisory |