LimeSurvey Unrestricted Upload of File with Dangerous Type Vulnerability - CVE-2018-16397 - Vulnerability Database

LimeSurvey Unrestricted Upload of File with Dangerous Type Vulnerability - CVE-2018-16397

Medium
Reference: CVE-2018-16397
Title: LimeSurvey Unrestricted Upload of File with Dangerous Type Vulnerability
Overview:

In LimeSurvey before 3.14.7 an admin user can leverage a quotfile uploadquot question to read an arbitrary file