NetObjects Fusion 9 (NOF9) allows remote attackers to obtain sensitive information, including passwords, by downloading the versioning_repository/rollbacklog.xml file, then using it to download and modify the associated ZIP file to edit and republish the site.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Netobjects_fusion | Netobjects | 9 (including) | 9 (including) |