index.php in Gurock TestRail 5.3.0.3603 returns potentially sensitive information for an invalid request, as demonstrated by full path disclosure and the identification of PHP as the backend technology.Referenceshttps://gist.github.com/nenf/2f16cd547c2afe166d1cb3f88f18bf81