Nagvis before 1
Nagvis before 1.9.34 was discovered to contain an arbitrary file read vulnerability via the component /core/classes/NagVisHoverUrl.php.
Exploitability
AC:L
AV:N
PR:L
UI:N
Scope
S:C
Impact
A:L
C:H
I:L
9.1/CVSS:3.1/AC:L/AV:N/A:L/C:H/I:L/PR:L/S:C/UI:N