The WebApp v04.68 in the supervisor on SAET Impianti Speciali TEBE Small 05.01 build 1137 devices allows remote malicious users to execute or include local .php files, as demonstrated by menu=php://filter/convert.base64-encode/resource=index.php to read index.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
saet tebe_small_firmware 05.01 |
||
saet webapp 04.68 |