CVE-2017-17876
Published Dec 27, 2017Biometric Shift Employee Management System 3.0 allows remote attackers to bypass intended file-read restrictions via a user=download request with a pathname in the path parameter.
Vendor/product archive
1 CVEs tagged to iwcnetwork / shift — 0 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.
Biometric Shift Employee Management System 3.0 allows remote attackers to bypass intended file-read restrictions via a user=download request with a pathname in the path parameter.