Gibbon v25.0.0 is vulnerable to a Local File Inclusion (LFI) vulnerability where it's possible to include the content of several files present in the installation folder in the server's response.
Gibbon v2500 - Local File Inclusion - CVE-2023-34598
Gibbon v2500 is vulnerable to a Local File Inclusion (LFI) vulnerability where it's possible to include the content of several files present in the installation folder in the server's response
Proof of Concept
In order to exploit the vulnerability, an attacker would need to manipulate the "q" paramete