Vulnerability CVE-2024-28753


Published: 2024-03-09

Description:
RaspAP (aka raspap-webgui) through 3.0.9 allows remote attackers to read the /etc/passwd file via a crafted request.

 References:
https://dustri.org/b/carrot-disclosure.html

Copyright 2026, cxsecurity.com

 

Back to Top