CVE-2023-25803: Path Traversal
Roxy-WI is a Web interface for managing Haproxy, Nginx, Apache, and Keepalived servers. Versions prior to 6.3.5.0 have a directory traversal vulnerability that allows the inclusion of server-side files. This issue is fixed in version 6.3.5.0.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-25803?
CVE-2023-25803 is classified as a directory traversal vulnerability that poses a significant risk to the security of affected systems.
How do I fix CVE-2023-25803?
To fix CVE-2023-25803, upgrade Roxy-WI to version 6.3.5.0 or later immediately.
What systems are affected by CVE-2023-25803?
CVE-2023-25803 affects all versions of Roxy-WI prior to 6.3.5.0.
What impact does CVE-2023-25803 have on my server?
CVE-2023-25803 allows unauthorized access to server-side files, potentially leading to data exposure or compromise.
Is there a workaround for CVE-2023-25803?
There are no officially recommended workarounds for CVE-2023-25803; upgrading software is the best course of action.