Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-43264

Опубликовано: 02 нояб. 2021
Источник: debian
EPSS Низкий

Описание

In Mahara before 20.04.5, 20.10.3, 21.04.2, and 21.10.0, adjusting the path component for the page help file allows attackers to bypass the intended access control for HTML files via directory traversal. It replaces the - character with the / character.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mahararemovedpackage

EPSS

Процентиль: 32%
0.00127
Низкий

Связанные уязвимости

CVSS3: 3.3
nvd
больше 4 лет назад

In Mahara before 20.04.5, 20.10.3, 21.04.2, and 21.10.0, adjusting the path component for the page help file allows attackers to bypass the intended access control for HTML files via directory traversal. It replaces the - character with the / character.

github
больше 3 лет назад

In Mahara before 20.04.5, 20.10.3, 21.04.2, and 21.10.0, adjusting the path component for the page help file allows attackers to bypass the intended access control for HTML files via directory traversal. It replaces the - character with the / character.

EPSS

Процентиль: 32%
0.00127
Низкий