CVE-2019-18951: Sibsoft Xfilesharing

High severity, CVSS 7.5. EPSS: 19.8% chance of exploitation in the next 30 days.

SibSoft Xfilesharing through 2.5.1 allows op=page&tmpl=../ directory traversal to read arbitrary files.

Affected products

  • Sibsoft Xfilesharing: up to and including 2.5.1

Published 2019-11-13. Last modified 2026-06-17.