CVE-2019-16679: Path Traversal
Published Sep 21, 2019
·Updated
Gila CMS before 1.11.1 allows admin/fm/?f=../ directory traversal, leading to Local File Inclusion.
Affected Software
1 affected component
GilaCMS Gila Cms<1.11.1
Event History
Sep 21, 2019
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is CVE-2019-16679?
CVE-2019-16679 is a vulnerability in Gila CMS before version 1.11.1 that allows directory traversal leading to Local File Inclusion.
2
How severe is CVE-2019-16679?
CVE-2019-16679 has a severity rating of 4.9, which is considered medium.
3
How does CVE-2019-16679 affect Gila CMS?
CVE-2019-16679 affects Gila CMS versions before 1.11.1 by allowing directory traversal, which can lead to Local File Inclusion.
4
How can I fix CVE-2019-16679?
To fix CVE-2019-16679, you should update Gila CMS to version 1.11.1 or higher.
5
What is the Common Weakness Enumeration (CWE) for CVE-2019-16679?
The CWE for CVE-2019-16679 is CWE-22, which refers to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal').