Zentao Demo15 is vulnerable to Directory Traversal. The impact is: obtain sensitive information (remote). The component is: URL : view-source:https://demo15.zentao.pm/user-login.html/zentao/index.php?mode=getconfig.
| Software | From | Fixed in |
|---|---|---|
| easycorp / zentao | 15.0 | 15.0.x |