CVE-2023-36667: Path Traversal
Published Nov 8, 2023
·Updated
Couchbase Server 7.1.4 before 7.1.5 and 7.2.0 before 7.2.1 allows Directory Traversal.
Affected Software
2 affected components
Couchbase Couchbase Server>=2.0.0<7.1.5
Couchbase Couchbase Server=7.2.0
Event History
Nov 8, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2023-36667?
CVE-2023-36667 is a vulnerability in Couchbase Server 7.1.4 before 7.1.5 and 7.2.0 before 7.2.1 that allows directory traversal.
2
How severe is CVE-2023-36667?
CVE-2023-36667 has a severity rating of 7.5 (high).
3
What is affected by CVE-2023-36667?
Couchbase Server versions 7.1.4 before 7.1.5 and 7.2.0 before 7.2.1 are affected by CVE-2023-36667.
4
How can I fix CVE-2023-36667?
To fix CVE-2023-36667, you should update your Couchbase Server installation to version 7.1.5 or 7.2.1, depending on the currently installed version.
5
Where can I find more information about CVE-2023-36667?
You can find more information about CVE-2023-36667 in the release notes of Couchbase Server (https://docs.couchbase.com/server/current/release-notes/relnotes.html) and the Couchbase security alerts (https://www.couchbase.com/alerts/).