Overview
Versions of m-server
before 1.4.2 are vulnerable to path traversal allowing a remote attacker to display content of arbitrary files from the server.
Remediation
Update to version 1.4.2 or later.
Resources
Have content suggestions? Send them to [email protected]
Advisory timeline
Created
2018-11-07T21:59:34.758ZUpdated
2018-11-07T21:59:34.758Z