Files or Directories Accessible to External Parties vulnerability in smb server in ProjectDiscovery Interactsh allows remote attackers to read/write any files in the directory and subdirectories of where the victim runs interactsh-server via anonymous login.
The product makes files or directories accessible to unauthorized actors, even though they should not be.
Link | Tags |
---|---|
https://zuso.ai/advisory/za-2024-01 | third party advisory |
https://github.com/projectdiscovery/interactsh/pull/874 | patch |