Microweber CMS <= 2.0.20 - Unauthenticated Arbitrary File Read
Microweber CMS <= 2.0.20 contains a path traversal vulnerability caused by failure to normalize path query parameter in static file controller, letting unauthenticated remote attackers read arbitrary files.