Invicti identified a Local File Inclusion vulnerability, which occurs when a file from the target system is injected into the attacked server page.
Invicti confirmed this issue by reading some files from the target web server.
The impact can vary, based on the exploitation and the read permission of the web server user. Depending on these factors, an attacker might carry out one or more of the following attacks:
"/etc/passwd"
file"/apache/logs/error.log"
or "/apache/logs/access.log"
You can search and find all vulnerabilities