Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:27733
HistoryNov 03, 2020 - 3:39 a.m.

Directory Traversal

2020-11-0303:39:42
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10
directory traversal
validation
attacker access
system files
web root
url

EPSS

0.001

Percentile

26.1%

droppy is vulnerable to directory traversal. Lack of validation allows an attacker to access system files outside of the web root using the ../ characters in the URL.

EPSS

0.001

Percentile

26.1%

Related for VERACODE:27733