Biometric Shift Employee Management System 3.0 allows remote attackers to bypass intended file-read restrictions via a user=download request with a pathname in the path parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Shift |
Iwcnetwork |
3.0 (including) |
3.0 (including) |
References