Directory traversal vulnerability in ELOG before 2.6.1 allows remote attackers to access arbitrary files outside of the elog directory via “…/” (dot dot) sequences in the URL.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Debian | 10 | all | elog | < 3.1.3-1-1 | elog_3.1.3-1-1_all.deb |