CVE-2017-7282
An issue was discovered in Unitrends Enterprise Backup before 9.1.1. The function downloadFile in api/includes/restore.php blindly accepts any filename passed to /api/restore/download as valid. This allows an authenticated attacker to read any file in the filesystem that the web server has access to, aka Local File Inclusion (LFI).
- Affected products
- Unitrends Enterprise Backup
- Unitrends Enterprise Backup
- ≤ 9.1
- Fix
- Available
- CVSS 2.0
- 7.1 HIGH
- CVSS 3.1
- 5.5 MEDIUM
- EPSS
- 3.2% (87th percentile)
- Weakness
- CWE-200
- NVD status
- Modified
- Published
- 2017-04-20
CVE-2017-7282 at NVD
1 known exploit for CVE-2017-7282
Proof-of-concept code and exploit modules indexed by Sploitus