ImageMagick 'label' Pseudo Protocol Local File Read Vulnerability (CVE-2016-3717)
Publish Date: 31 mai 2016
Gravité: : Critique
Date du conseil: 31 mai 2016
Description
It is possible to get content of any arbitrary file from the web server by using ImageMagick's 'label' pseudo protocol.
Information Exposure Rating:
Apply associated Trend Micro DPI Rules.
Solutions
Trend Micro Deep Security DPI Rule Number: 1007610