CVE-2023-36819: Knowage-Server vulnerable to Path traversal in download functionalities
Knowage is the professional open source suite for modern business analytics over traditional sources and big data systems. The endpoint /knowage/restful-services/dossier/importTemplateFile allows authenticated users to download template hosted on the server. However, starting in the 6.x.x branch and prior to version 8.1.8, the application does not sanitize the templateName parameter allowing an attacker to use ../ in it, and escaping the directory the template are normally placed and download any file from the system. This vulnerability allows a low privileged attacker to exfiltrate sensitive configuration file. This issue has been patched in Knowage version 8.1.8.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Knowage-Serverto a version that resolves this vulnerability.Fixed in 8.1.8
Event History
Frequently Asked Questions
What is the severity of CVE-2023-36819?
CVE-2023-36819 has a severity rating that indicates it could potentially allow unauthorized file downloads.
Who is affected by CVE-2023-36819?
CVE-2023-36819 affects authenticated users of Knowage versions between 6.0.0 and 8.1.8.
How do I mitigate CVE-2023-36819?
To mitigate CVE-2023-36819, upgrade Knowage to a version above 8.1.8.
What types of attacks can CVE-2023-36819 enable?
CVE-2023-36819 can potentially enable unauthorized data access through file download vulnerabilities.
Is there a patch available for CVE-2023-36819?
Yes, patches are included in Knowage updates, specifically in versions after 8.1.8.