Files
CVEs-PoC/2013/CVE-2013-4861.md
2024-06-18 02:51:15 +02:00

858 B

CVE-2013-4861

Description

Directory traversal vulnerability in cgi-bin/cmh/get_file.sh in MiCasaVerde VeraLite with firmware 1.5.408 allows remote authenticated users to read arbirary files via a .. (dot dot) in the filename parameter.

POC

Reference

Github

No PoCs found on GitHub currently.