We found results for “”
CVE-2023-37474
Good to know:
Date: July 14, 2023
Copyparty is a portable file server. Versions prior to 1.8.2 are subject to a path traversal vulnerability detected in the ".cpr" subfolder. The Path Traversal attack technique allows an attacker access to files, directories, and commands that reside outside the web document root directory. This issue has been addressed in commit "043e3c7d" which has been included in release 1.8.2. Users are advised to upgrade. There are no known workarounds for this vulnerability.
Language: Python
Severity Score
Related Resources (8)
Severity Score
Weakness Type (CWE)
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CWE-22Top Fix
CVSS v3.1
| Base Score: |
|
|---|---|
| Attack Vector (AV): | NETWORK |
| Attack Complexity (AC): | LOW |
| Privileges Required (PR): | NONE |
| User Interaction (UI): | NONE |
| Scope (S): | UNCHANGED |
| Confidentiality (C): | HIGH |
| Integrity (I): | NONE |
| Availability (A): | NONE |
Vulnerabilities
Projects
Contact Us


