CVE-2018-7171

Publication date

2018-03-30 21:00:00

Family

mitre

State

PUBLISHED

Description

Directory traversal vulnerability in Twonky Server 7.0.11 through 8.5 allows remote attackers to share the contents of arbitrary directories via a .. (dot dot) in the contentbase parameter to rpc/set_all.