freeradius_view_config.php: File contents are displayed without encoding
freeradius_view_config.php reads and displays the contents of several FreeRADIUS-related files. The contents are displayed without encoding, which enables potential XSS exploitation.
#1 Updated by Jim Pingle 5 months ago
- Status changed from New to Feedback
Fixed in FreeRADIUS3 pkg version 0.15.7_3