Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-3057
HistoryJun 02, 2023 - 1:15 p.m.

Path traversal

2023-06-0213:15:00
PRIOn knowledge base
www.prio-n.com
3
vulnerability
yfcmf
path traversal
remote attack
file manipulation
ajax.php
vdb-230543

9.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

50.9%

A vulnerability was found in YFCMF up to 3.0.4. It has been rated as problematic. This issue affects some unknown processing of the file app/admin/controller/Ajax.php. The manipulation of the argument controllername leads to path traversal: ‘…/filedir’. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-230543.

CPENameOperatorVersion
yfcmf-tp6le3.0.4

9.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

50.9%

Related for PRION:CVE-2023-3057