Количество 2
Количество 2
CVE-2024-22723
Webtrees 2.1.18 is vulnerable to Directory Traversal. By manipulating the "media_folder" parameter in the URL, an attacker (in this case, an administrator) can navigate beyond the intended directory (the 'media/' directory) to access sensitive files in other parts of the application's file system.
GHSA-6w5q-79rf-7c49
Webtrees Path Traversal vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2024-22723 Webtrees 2.1.18 is vulnerable to Directory Traversal. By manipulating the "media_folder" parameter in the URL, an attacker (in this case, an administrator) can navigate beyond the intended directory (the 'media/' directory) to access sensitive files in other parts of the application's file system. | CVSS3: 4.9 | 0% Низкий | почти 2 года назад | |
GHSA-6w5q-79rf-7c49 Webtrees Path Traversal vulnerability | CVSS3: 4.9 | 0% Низкий | почти 2 года назад |
Уязвимостей на страницу