RiSearch 1.0.01 and RiSearch Pro 3.2.06 allows remote attackers to use the show.pl script as an open proxy, or read arbitrary local files, by setting the url parameter to a (1) http://, (2) ftp://, or (3) file:// URL.
Score: 0.0
Priority: Unclassified
Score: 0.17394Percentile: 0.94752
CVSS v3.1 Score: 9.8
Severity: CRITICAL
← Back to Home