Описание
Yaws 1.91 has a directory traversal vulnerability in the way certain URLs are processed. A remote authenticated user could use this flaw to obtain content of arbitrary local files via specially-crafted URL request.
Ссылки
- Broken Link
- Third Party Advisory
- ExploitIssue TrackingThird Party Advisory
- Third Party Advisory
- Mailing ListThird Party Advisory
- Broken Link
- Third Party Advisory
- ExploitIssue TrackingThird Party Advisory
- Third Party Advisory
- Mailing ListThird Party Advisory
Уязвимые конфигурации
Одно из
EPSS
6.5 Medium
CVSS3
4 Medium
CVSS2
Дефекты
Связанные уязвимости
Yaws 1.91 has a directory traversal vulnerability in the way certain URLs are processed. A remote authenticated user could use this flaw to obtain content of arbitrary local files via specially-crafted URL request.
Yaws 1.91 has a directory traversal vulnerability in the way certain U ...
Yaws 1.91 has a directory traversal vulnerability in the way certain URLs are processed. A remote authenticated user could use this flaw to obtain content of arbitrary local files via specially-crafted URL request.
EPSS
6.5 Medium
CVSS3
4 Medium
CVSS2