Description
Cuberite before 2019-06-11 allows webadmin directory traversal via ....// because the protection mechanism simply removes one ../ substring.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-6502 | Cuberite before 2019-06-11 allows webadmin directory traversal via ....// because the protection mechanism simply removes one ../ substring. |
References
| Link | Providers |
|---|---|
| https://github.com/cuberite/cuberite/pull/4341 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T00:49:13.595Z
Reserved: 2019-08-23T00:00:00.000Z
Link: CVE-2019-15516
No data.
Status : Modified
Published: 2019-08-23T15:15:10.700
Modified: 2024-11-21T04:28:54.600
Link: CVE-2019-15516
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD