Description
An arbitrary file read vulnerability in ureport v2.2.9 allows a remote attacker to arbitrarily read files on the server by inserting a crafted path.
Remediation
References
https://github.com/h00klod0er/ureport2-vuln/
Related Vulnerabilities
CVE-2022-25869 Vulnerability in maven package org.webjars.npm:angular
CVE-2021-44228 Vulnerability in maven package org.apache.logging.log4j:log4j-core
CVE-2021-23399 Vulnerability in npm package wincred
CVE-2022-25878 Vulnerability in maven package org.webjars.npm:protobufjs
CVE-2017-5638 Vulnerability in maven package org.apache.struts:struts2-core