The Phoenix browser in eSeSIX Thintune thin clients running firmware 2.4.38 and earlier allows local users to read arbitrary files via a file:/// URL.
| Software | From | Fixed in |
|---|---|---|
| esesix / thintune_l | 2.4.38_firmware | 2.4.38_firmware.x |
| esesix / thintune_xs | 2.4.38_firmware | 2.4.38_firmware.x |
| esesix / thintune_m | 2.4.38_firmware | 2.4.38_firmware.x |
| esesix / thintune_extreme | 2.4.38_firmware | 2.4.38_firmware.x |
| esesix / thintune_mobile | 2.4.38_firmware | 2.4.38_firmware.x |
| esesix / thintune_xm | 2.4.38_firmware | 2.4.38_firmware.x |
| esesix / thintune_s | 2.4.38_firmware | 2.4.38_firmware.x |