Description
Webile 1.0.1 contains a directory traversal vulnerability that allows remote attackers to manipulate file system paths without authentication. Attackers can exploit path manipulation to access sensitive system directories and potentially compromise the mobile device's local file system.
Problem types
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Product status
1.0.1
Credits
Vulnerability-Lab [Research Team]
References
www.vulnerability-lab.com/get_content.php?id=2320 (Vulnerability Lab Advisory)
play.google.com/...ails?id=com.techprd.filetransfer&hl=en_US (Product Homepage)
www.vulncheck.com/...ersal-vulnerability-via-web-application (VulnCheck Advisory: Webile 1.0.1 Directory Traversal Vulnerability via Web Application)