Lucene search

K
osvGoogleOSV:GHSA-XC7W-JVHX-P6Q9
HistoryMay 14, 2022 - 2:52 a.m.

Cobbler Path Traversal vulnerability

2022-05-1402:52:42
Google
osv.dev
5

6.3 Medium

AI Score

Confidence

Low

0.03 Low

EPSS

Percentile

90.9%

Absolute path traversal vulnerability in the web interface in Cobbler 2.4.x through 2.6.x allows remote authenticated users to read arbitrary files via the Kickstart field in a profile.

6.3 Medium

AI Score

Confidence

Low

0.03 Low

EPSS

Percentile

90.9%