
i-doit CMDB arbitrary file download exposes configuration secrets
CVE-2019-25582 describes a High-severity arbitrary file download in i-doit CMDB 1.12, letting authenticated users fetch sensitive server files via crafted `index.php` requests.
NewsWeb SecurityAccess Control
1 min21 Mar 2026
