
CVE-2018-25178 Easyndexer 1.0 contains an arbitrary file download vulnerability that allows unauthenticated attackers to download sensitive files by manipulating the file parameter.… https://www.cve.org/CVERecord?id=CVE-2018-25178
Post summary
The post announces CVE‑2018‑25178 as an arbitrary file download flaw that enables unauthenticated sensitive file downloads, but does not provide a PoC, exploit, patch, or evidence of active exploitation.
