Known CVE
Drupal avatar_uploader v7.x-1.0-beta8 - Local File Inclusion
In avatar_uploader v7.x-1.0-beta8 the view.php program doesn't restrict file paths, allowing unauthenticated users to retrieve arbitrary files.
CVE-2018-9205
High2018CVSS 7.5CWE-22
cve2018 · lfi · drupal · edb · vkev · vuln
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website