Remote File Read Vulnerability in Biometric Shift Employee Management System 3.0

Remote File Read Vulnerability in Biometric Shift Employee Management System 3.0

CVE-2017-17876 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

Biometric Shift Employee Management System 3.0 allows remote attackers to bypass intended file-read restrictions via a user=download request with a pathname in the path parameter.

Learn more about our User Device Pen Test.