IBOS v4.5.5 has an arbitrary file deletion vulnerability via \system\modules\dashboard\controllers\LoginController.php.
The product does not properly "clean up" and remove temporary or supporting resources after they have been used.
Link | Tags |
---|---|
https://gitee.com/ibos/IBOS | product |
https://github.com/A7cc/cve/issues/1 | exploit issue tracking third party advisory |