Описание
Bazarr manages and downloads subtitles. Prior to 1.3.1, Bazarr contains an arbitrary file read in /system/backup/download/ endpoint in bazarr/app/ui.py does not validate the user-controlled filename variable and uses it in the send_file function, which leads to an arbitrary file read on the system. This issue is fixed in version 1.3.1.
Ссылки
- Patch
- Release Notes
- ExploitThird Party Advisory
- Patch
- Release Notes
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.3.1 (исключая)
cpe:2.3:a:bazarr:bazarr:*:*:*:*:*:*:*:*
EPSS
Процентиль: 49%
0.00263
Низкий
7.5 High
CVSS3
Дефекты
CWE-22
EPSS
Процентиль: 49%
0.00263
Низкий
7.5 High
CVSS3
Дефекты
CWE-22