Логотип exploitDog
bind:CVE-2020-15230
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-15230

Количество 2

Количество 2

nvd логотип

CVE-2020-15230

больше 5 лет назад

Vapor is a web framework for Swift. In Vapor before version 4.29.4, Attackers can access data at arbitrary filesystem paths on the same host as an application. Only applications using FileMiddleware are affected. This is fixed in version 4.29.4.

CVSS3: 8.5
EPSS: Низкий
github логотип

GHSA-vcvg-xgr8-p5gq

больше 2 лет назад

Arbitrary file read using percent-encoded relative paths in FileMiddleware

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-15230

Vapor is a web framework for Swift. In Vapor before version 4.29.4, Attackers can access data at arbitrary filesystem paths on the same host as an application. Only applications using FileMiddleware are affected. This is fixed in version 4.29.4.

CVSS3: 8.5
1%
Низкий
больше 5 лет назад
github логотип
GHSA-vcvg-xgr8-p5gq

Arbitrary file read using percent-encoded relative paths in FileMiddleware

CVSS3: 6.5
1%
Низкий
больше 2 лет назад

Уязвимостей на страницу