Vulnerabilities > CVE-2018-10207 - Missing Authorization vulnerability in Vaultize Enterprise File Sharing 17.05.31
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
LOW Integrity impact
NONE Availability impact
NONE Summary
An issue was discovered in Vaultize Enterprise File Sharing 17.05.31. An attacker can exploit Missing Authorization on the FlexPaperViewer SWF reader, and export files that should have been restricted, via vectors involving page-by-page access to a document in SWF format.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |