CVE-2023-3172: Path Traversal in froxlor/froxlor
Published Jun 9, 2023
·Updated
Path Traversal in GitHub repository froxlor/froxlor prior to 2.0.20.
Affected Software
2 affected componentsFixes available
composer/froxlor/froxlor<2.0.20
2.0.20
Froxlor Froxlor<2.0.20
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
composer/froxlor/froxlorto a version that resolves this vulnerability.Fixed in 2.0.20
Event History
Jun 9, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Advisory Published
03:30 AM
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-3172.
2
What is the severity of CVE-2023-3172?
CVE-2023-3172 has a severity level of high (7.2).
3
What is the affected software for CVE-2023-3172?
The affected software for CVE-2023-3172 is Froxlor Froxlor prior to version 2.0.20.
4
What is the CWE ID for CVE-2023-3172?
The CWE ID for CVE-2023-3172 is CWE-22.
5
How do I fix CVE-2023-3172?
To fix CVE-2023-3172, update your Froxlor Froxlor installation to version 2.0.20 or later.