Loading
Generated remediation guidance and an executive summary. No account required.
A vulnerability, which was classified as problematic, was found in ProjectSend r754. This affects an unknown part of the file process.php?do=zip_download. The manipulation of the argument client/file leads to information disclosure. It is possible to initiate the attack remotely.
Use CWE-200, Projectsend vendor hub and Projectsend product page to widen CVE-2017-20101 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-11680, CVE-2021-40887 and CVE-2023-53980 for nearby disclosures in the same product family.