Beveiligingsadvies

CVE-2022-26960

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-03-21 16:52:38
Laatst bijgewerkt 2024-08-03 05:18:38
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

connector.minimal.php in std42 elFinder through 2.1.60 is affected by path traversal. This allows unauthenticated remote attackers to read, write, and browse files outside the configured document root. This is due to improper handling of absolute file paths.