High
CVSS 7.5
Overview
Biometric Shift Employee Management System 3.0 allows remote attackers to bypass intended file-read restrictions via a user=download request with a pathname in the path parameter.
Biometric Shift Employee Management System 3.0 allows remote attackers to bypass...
Biometric Shift Employee Management System 3.0 allows remote attackers to bypass intended file-read restrictions via a user=download request with a pathname in the path parameter.
This vulnerability is rated 🟠 HIGH.
Recommended actions: