RULE(RULE ID:330924)

Rule General Information
Release Date: 2020-08-26
Rule Name: Cobub Razor 0.8.0 Physical Path Leakage Vulnerability (CVE-2018-8770)
Severity:
CVE ID:
Rule Protection Details
Description: Physical path Leakage exists in Western Bridge Cobub Razor 0.8.0 via generate.php, controllers/getConfigTest.php, controllers/getUpdateTest.php, controllers/postclientdataTest.php, controllers/posterrorTest.php, controllers/posteventTest.php, controllers/posttagTest.php, controllers/postusinglogTest.php, fixtures/Controller_fixt.php, fixtures/Controller_fixt2.php, fixtures/view_fixt2.php, libs/ipTest.php, or models/commonDbfix.php in tests/.
Impact: An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information.
Affected OS: Windows, Linux, Others
Reference: ExploitDB:44495
https://github.com/Kyhvedn/CVE_Description/blob/master/Cobub_Razor_0.8.0_more_physical_path_leakage.md
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
http://www.cobub.com/