Medium
CVSS 4.0
Overview
The file server in ActivePost Standard 3.1 and earlier allows remote authenticated users to obtain sensitive information by uploading a file, which reveals the path in a success message.
The file server in ActivePost Standard 3.1 and earlier allows remote authenticat...
The file server in ActivePost Standard 3.1 and earlier allows remote authenticated users to obtain sensitive information by uploading a file, which reveals the path in a success message.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: