Home

Description

Directory traversal vulnerability in AbanteCart version 1.4.2 allows unauthenticated attackers to gain access to sensitive system files via the template parameter to index.php.

PUBLISHED Reserved 2025-06-16 | Published 2025-08-26 | Updated 2025-09-04 | Assigner mitre

References

github.com/...file_traversal_1.4.2_via_template_parameter.md

cve.org (CVE-2025-50971)

nvd.nist.gov (CVE-2025-50971)

Download JSON