Lucene search

K

Copyparty Security Vulnerabilities

cve
cve

CVE-2023-38501

copyparty is file server software. Prior to version 1.8.7, the application contains a reflected cross-site scripting via URL-parameter ?k304=... and ?setck=.... The worst-case outcome of this is being able to move or delete existing files on the server, or upload new files, using the account of...

6.3CVSS

5.9AI Score

0.002EPSS

2023-07-25 10:15 PM
41
cve
cve

CVE-2023-37474

Copyparty is a portable file server. Versions prior to 1.8.2 are subject to a path traversal vulnerability detected in the .cpr subfolder. The Path Traversal attack technique allows an attacker access to files, directories, and commands that reside outside the web document root directory. This...

7.5CVSS

7.4AI Score

0.055EPSS

2023-07-14 08:15 PM
35