CVE-2023-25306: Path Traversal
Published Jun 26, 2023
·Updated
MultiMC Launcher <= 0.6.16 is vulnerable to Directory Traversal.
Affected Software
1 affected component
MultiMC MultiMC<0.7.0
Event History
Jun 26, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-25306?
CVE-2023-25306 is considered a medium severity vulnerability due to its impact on the file system.
2
How do I fix CVE-2023-25306?
To fix CVE-2023-25306, update the MultiMC Launcher to version 0.7.0 or later.
3
What versions are affected by CVE-2023-25306?
CVE-2023-25306 affects MultiMC Launcher versions up to and including 0.6.16.
4
What type of vulnerability is CVE-2023-25306?
CVE-2023-25306 is categorized as a Directory Traversal vulnerability.
5
What could an attacker potentially achieve with CVE-2023-25306?
An attacker could exploit CVE-2023-25306 to access files outside of the intended directory structure.