Ninja Tables <4.1.9 - Unauthenticated Arbitrary File Read [LFI]
Vulnerability Details: Unauthenticated Arbitrary File Read via `ninja_table_force_download`
Proof of Concept (PoC) Steps
1. Extract the Nonce
curl -s https://target.com | grep -oP '"ninja_table_public_nonce":"\K[a-z0-9]+'2. Read `/etc/os-release`
3. Read `/etc/passwd`
Security Impact
Remediation
References
Last updated