CVE-2020-10366: Path Traversal
Published Apr 7, 2020
·Updated
LogicalDoc before 8.3.3 allows /servlet.gupld Directory Traversal, a different vulnerability than CVE-2020-9423 and CVE-2020-10365.
Affected Software
1 affected component
LogicalDOC LogicalDOC<8.3.3
Event History
Apr 7, 2020
CVE Published
via MITRE·11:58 PM
Data Sourced
via MITRE·11:58 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for LogicalDoc?
The vulnerability ID for LogicalDoc is CVE-2020-10366.
2
What is the severity of the CVE-2020-10366 vulnerability?
The severity of the CVE-2020-10366 vulnerability is high with a severity value of 7.5.
3
What is the affected software version of LogicalDoc?
The affected software version of LogicalDoc is up to exclusive version 8.3.3.
4
What is the CWE category for CVE-2020-10366?
The CWE category for CVE-2020-10366 is CWE-22.
5
How can I fix the CVE-2020-10366 vulnerability?
To fix the CVE-2020-10366 vulnerability, update LogicalDoc to version 8.3.3 or above.