Biometric Shift Employee Management System 3.0 allows remote attackers to bypass intended file-read restrictions via a user=download request with a pathname in the path parameter.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Shift | Iwcnetwork | 3.0 (including) | 3.0 (including) |
References