CVE-2019-17199
18Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 10.0%
from disclosure to weapon0 days
Published on NVDOct 5
metasploitJul 13
exploitation probability
10.0%top 5% of all CVEs
observed exploitation
nono source reports it
www/getfile.php in WPO WebPageTest 19.04 on Windows allows Directory Traversal (for reading arbitrary files) because of an unanchored regular expression, as demonstrated by the a.jpg\.. substring.
Affected products
n/a · n/a