Path Traversal vulnerability in Softdial Contact Center...
High severity
Unreviewed
Published
Mar 18, 2025
to the GitHub Advisory Database
Description
Published by the National Vulnerability Database
Mar 18, 2025
Published to the GitHub Advisory Database
Mar 18, 2025
Path Traversal vulnerability in Softdial Contact Center of Sytel Ltd. This vulnerability allows an attacker to manipulate the ‘id’ parameter of the ‘/softdial/scheduler/load.php’ endpoint to navigate beyond the intended directory. This can allow unauthorised access to sensitive files outside the expected scope, posing a security risk.
References