Lucene search

K
githubGitHub Advisory DatabaseGHSA-X8XM-WRJQ-5G54
HistoryMay 15, 2024 - 9:31 p.m.

Stakater Forecastle has a directory traversal vulnerability

2024-05-1521:31:25
CWE-22
GitHub Advisory Database
github.com
5
stakater forecastle
directory traversal
vulnerability

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

7.1 High

AI Score

Confidence

Low

Stakater Forecastle 1.0.139 and before allows %5C…/ directory traversal in the website component.

Affected configurations

Vulners
Node
github.com\/stakater\/forecastleRange1.0.139

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

7.1 High

AI Score

Confidence

Low

Related for GHSA-X8XM-WRJQ-5G54