Early Access — Mondoo Vulnerability Intelligence is currently in preview.
Vitals ESP developed by Galaxy Software Services has an Arbitrary File Read vulnerability, allowing privileged remote attackers to exploit Absolute Path Traversal to download arbitrary system files.
Exploitability
AV:NAC:LAT:NPR:HUI:NVulnerable System
VC:HVI:NVA:NSubsequent System
SC:NSI:NSA:N6.9/CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:NInput Validation