CVE-2023-0316: Path Traversal: '\..\filename' in froxlor/froxlor
Path Traversal: '\..\filename' in GitHub repository froxlor/froxlor prior to 2.0.0.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2023-0316.
What is the severity of CVE-2023-0316?
The severity of CVE-2023-0316 is medium with a CVSS score of 5.5.
How can I exploit the Path Traversal vulnerability in GitHub repository froxlor/froxlor prior to 2.0.0?
The Path Traversal vulnerability in GitHub repository froxlor/froxlor prior to 2.0.0 can be exploited by using the '\..\filename' pattern to traverse directories and access unauthorized files.
Is there a fix for CVE-2023-0316?
Yes, there is a fix for CVE-2023-0316. You should update to version 2.0.0 or later of the froxlor/froxlor repository.
Are there any references for CVE-2023-0316?
Yes, you can find more information about CVE-2023-0316 at the following links: [GitHub Commit](https://github.com/froxlor/froxlor/commit/983d9294603925018225d672795bd8b4a526f41e), [Huntr.dev Bounty](https://huntr.dev/bounties/c190e42a-4806-47aa-aa1e-ff5d6407e244).