Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gphq-xrj6-5g4j

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Absolute path traversal vulnerability in cantata before 1.2.2 allows local users to read arbitrary files via a full pathname in a request to the internal httpd server. NOTE: this vulnerability can be leveraged by remote attackers using CVE-2013-7301.

Absolute path traversal vulnerability in cantata before 1.2.2 allows local users to read arbitrary files via a full pathname in a request to the internal httpd server. NOTE: this vulnerability can be leveraged by remote attackers using CVE-2013-7301.

EPSS

Процентиль: 46%
0.00231
Низкий

Дефекты

CWE-22

Связанные уязвимости

ubuntu
около 12 лет назад

Absolute path traversal vulnerability in cantata before 1.2.2 allows local users to read arbitrary files via a full pathname in a request to the internal httpd server. NOTE: this vulnerability can be leveraged by remote attackers using CVE-2013-7301.

nvd
около 12 лет назад

Absolute path traversal vulnerability in cantata before 1.2.2 allows local users to read arbitrary files via a full pathname in a request to the internal httpd server. NOTE: this vulnerability can be leveraged by remote attackers using CVE-2013-7301.

debian
около 12 лет назад

Absolute path traversal vulnerability in cantata before 1.2.2 allows l ...

EPSS

Процентиль: 46%
0.00231
Низкий

Дефекты

CWE-22