Home
CRITICAL: 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
3.0 (custom)
affected
Description
A missing protection against path traversal allows to access any file on the server.
Problem types
CWE-23 Relative Path Traversal
Product status
3.0 (custom)
Credits
Fabian Weber (CODE WHITE GmbH)
Dr. Florian Hauser (CODE WHITE GmbH)
References
www.bbraun.com/productsecurity