Description
Agentflow developed by Flowring has an Arbitrary File Reading vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.
Problem types
CWE-23 Relative Path Traversal
Product status
4.0
References
www.twcert.org.tw/tw/cp-132-10438-1173e-1.html
www.twcert.org.tw/en/cp-139-10439-0bd15-2.html