
Proof-of-concept exploit for CVE-2023-29919 enabling unauthenticated arbitrary file read in SolarView Compact 6.00 via texteditor.php. Demonstrates authentication bypass for file disclosure.
There is an arbitrary read file vulnerability in SolarView Compact 6.00 and below, attackers can bypass authentication to read files through texteditor.php
SolarView Compact
SolarView Compact <=ver 6.00
http://example.com/texteditor.php
You can fill in the location of the file you want to read by visiting the texteditor.php page
