CVE-2020-36559
27.12.2022, 22:15
Due to improper sanitization of user input, HTTPEngine.Handle allows for directory traversal, allowing an attacker to read files outside of the target directory that the server has permission to read.
| Vendor | Product | Version |
|---|---|---|
| aahframework | aah | 𝑥 < 0.12.4 |
𝑥
= Vulnerable software versions
References