CVE-2015-4425
18.08.2015, 17:59
Directory traversal vulnerability in pimcore before build 3473 allows remote authenticated users with the "assets" permission to create or write to arbitrary files via a .. (dot dot) in the dir parameter to admin/asset/add-asset-compatibility.
Vendor | Product | Version |
---|---|---|
pimcore | pimcore | - |
𝑥
= Vulnerable software versions
References