Lucene search

K
githubexploit041A96C0-DBB2-58F0-A650-355E9A0DD02E
HistoryApr 27, 2024 - 1:21 p.m.

Exploit for Path Traversal in Aiohttp

2024-04-2713:21:50
178
aiohttp
security vulnerability
path traversal
lfi
exploitation
docker
python3
file upload
symlink
exploitation scenario
vulnerability explanation
mitigation steps
web server
compressed file
aiohttp vulnerability
development setup.

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

AI Score

7.6

Confidence

High

EPSS

0.115

Percentile

95.4%

poc-cve-2024-23334

This repository contains a proof of concept…

This is an article that belongs to githubexploit private collection.
Please sign in to get more Information.

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

AI Score

7.6

Confidence

High

EPSS

0.115

Percentile

95.4%