CVE-2018-6409 | Appnitro Machform up to 4.2.2 download.php q path traversal (EDB-44804 / ID 63636)
A vulnerability has been found in Appnitro Machform up to 4.2.2 and classified as critical. This vulnerability affects unknown code of the file download.php. The manipulation of the argument q as part of Parameter leads to path traversal.
This vulnerability was named CVE-2018-6409. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.