AgileBio Electronic Lab Notebook v4.234 was discovered to contain a local file inclusion vulnerability.
The PHP application receives input from an upstream component, but it does not restrict or incorrectly restricts the input before its usage in "require," "include," or similar functions.
Link | Tags |
---|---|
https://labcollector.com/labcollector-lims/add-ons/eln-electronic-lab-notebook/ | vendor advisory |
http://packetstormsecurity.com/files/171252/Agilebio-Lab-Collector-4.234-Remote-Code-Execution.html | vdb entry third party advisory |