Arbitrary File Viewing Vulnerability in ASUSTOR ADM File Explorer

Arbitrary File Viewing Vulnerability in ASUSTOR ADM File Explorer

CVE-2018-12306 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

Directory Traversal in File Explorer in ASUSTOR ADM version 3.1.1 allows attackers to view arbitrary files by modifying the "file1" URL parameter, a similar issue to CVE-2018-11344.

Learn more about our Web Application Penetration Testing UK.