Browsershot version 3.57.2 allows an... CVE-2022-43983

- AV AC AU C I A
发布: 2022-11-25
修订: 2024-11-21

Browsershot version 3.57.2 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not validate that the HTML content passed to the Browsershot::html method does not contain URL's that use the file:// protocol.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息