An issue in /admin/index.php?n=system&c=filept&a=doGetFileList of Metinfo v7.0.0 allows attackers to perform a directory traversal and access sensitive information.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-19304
Reference (s):
- https://github.com/MRdoulestar/CodeAnalyse/issues/1

