Lucene search

K
osvGoogleOSV:GHSA-4R6G-XHX7-FM36
HistoryMay 17, 2022 - 2:42 a.m.

Contao Core directory traversal vulnerability

2022-05-1702:42:22
Google
osv.dev
8

6.5 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

52.0%

Directory traversal vulnerability in Contao before 3.2.19, and 3.4.x before 3.4.4 allows remote authenticated backend users to view files outside their file mounts or the document root via unspecified vectors.

6.5 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

52.0%

Related for OSV:GHSA-4R6G-XHX7-FM36