CVE-2019-11515: Path Traversal
Published Apr 25, 2019
·Updated
core/classes/dbbackup.php in Gila CMS 1.10.1 allows admin/dbbackup?download= absolute path traversal to read arbitrary files.
Affected Software
1 affected component
GilaCMS Gila Cms=1.10.1
Event History
Apr 25, 2019
CVE Published
via MITRE·03:05 AM
Data Sourced
via MITRE·03:05 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-11515.
2
What is the severity of CVE-2019-11515?
The severity of CVE-2019-11515 is medium.
3
What is the affected software version of CVE-2019-11515?
The affected software version of CVE-2019-11515 is Gilacms Gila Cms 1.10.1.
4
What is the description of CVE-2019-11515?
CVE-2019-11515 is a vulnerability in Gila CMS 1.10.1 that allows absolute path traversal to read arbitrary files.
5
Is there a fix available for CVE-2019-11515?
Yes, please refer to the vendor's website or contact the vendor for a fix for CVE-2019-11515.