Lucene search

K
osvGoogleOSV:GHSA-76X8-GG39-5JJG
HistoryMay 01, 2022 - 11:28 p.m.

CherryPy Malicious cookies allow access to files outside the session directory

2022-05-0123:28:42
Google
osv.dev
4
cherrypy
directory traversal
malicious cookies
session directory
vulnerability
remote attackers
crafted session id
software security

AI Score

6.9

Confidence

Low

EPSS

0.008

Percentile

81.5%

Directory traversal vulnerability in the _get_file_path function in (1) lib/sessions.py in CherryPy 3.0.x up to 3.0.2, (2) filter/sessionfilter.py in CherryPy 2.1, and (3) filter/sessionfilter.py in CherryPy 2.x allows remote attackers to create or delete arbitrary files, and possibly read and write portions of arbitrary files, via a crafted session id in a cookie.

References

AI Score

6.9

Confidence

Low

EPSS

0.008

Percentile

81.5%