CVE-2019-9723: Path Traversal
Published May 30, 2019
·Updated
LogicalDOC Community Edition 8.x before 8.2.1 has a path traversal vulnerability that allows reading arbitrary files and the creation of directories, in the class PluginRegistry.
Affected Software
1 affected component
LogicalDOC LogicalDOC>=8.0<8.2.1
Event History
May 30, 2019
CVE Published
via MITRE·05:33 PM
Data Sourced
via MITRE·05:33 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-9723?
CVE-2019-9723 is classified as a medium severity vulnerability due to its potential for unauthorized access to sensitive files.
2
How do I fix CVE-2019-9723?
To fix CVE-2019-9723, upgrade LogicalDOC Community Edition to version 8.2.1 or later.
3
What type of vulnerability is CVE-2019-9723?
CVE-2019-9723 is a path traversal vulnerability that allows unauthorized file access.
4
Which versions of LogicalDOC are affected by CVE-2019-9723?
CVE-2019-9723 affects all versions of LogicalDOC Community Edition from 8.0 to below 8.2.1.
5
How can an attacker exploit CVE-2019-9723?
An attacker can exploit CVE-2019-9723 by manipulating file paths to read arbitrary files on the server.