CVE-2018-16831: Path Traversal
Smarty before 3.1.33-dev-4 allows attackers to bypass the trusteddir protection mechanism via a file:./../ substring in an include statement.
Other sources
Smarty before 3.1.33-dev-4 allows attackers to bypass the trusteddir protection mechanism via a file:./../ substring in an include statement.
Trusted-Directory Bypass via Path Traversal
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-16831?
CVE-2018-16831 has been classified with a moderate severity level due to the potential for attackers to bypass security mechanisms.
How do I fix CVE-2018-16831?
To fix CVE-2018-16831, upgrade Smarty to version 3.1.33 or later.
What systems are affected by CVE-2018-16831?
CVE-2018-16831 affects Smarty versions before 3.1.33, specifically versions between 3.0.0 and 3.1.32.
What is the impact of exploiting CVE-2018-16831?
Exploiting CVE-2018-16831 allows attackers to execute arbitrary PHP code by bypassing the trusted_dir protection mechanism.
Is there a workaround for CVE-2018-16831?
Currently, the recommended workaround for CVE-2018-16831 is to restrict file access permissions and upgrade Smarty to a secure version.