The iThoughtsHD app 4.19 for iOS on iPad devices, when the WiFi Transfer feature is used, allows remote malicious users to upload arbitrary files by placing a %00 sequence after a dangerous extension, as demonstrated by a .html%00.txt file.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ithoughts ithoughtshd 4.19 |