Home
HIGH: 8.6 CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:A/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N/U:RedDefault status
unaffected
1.61.3 (semver) before 2.8.1
affected
Description
External Control of File Name or Path vulnerability in PlexTrac allows Local Code Inclusion through use of an undocumented API endpoint.This issue affects PlexTrac: from 1.61.3 before 2.8.1.
Problem types
CWE-73 External Control of File Name or Path
Product status
1.61.3 (semver) before 2.8.1
Credits
Ianis Bernard
References
docs.plextrac.com/...ocumentation/master/security-advisories