An issue was discovered in OFCMS before 1.1.3. It has admin/cms/template/getTemplates.html?res_path=res&up_dir=../ directory traversal, related to the getTemplates function in TemplateController.java.
References
Link | Resource |
---|---|
https://www.seebug.org/vuldb/ssvid-97838 | Exploit Third Party Advisory |
Configurations
Information
Published : 2019-03-06 14:29
Updated : 2019-03-07 10:06
NVD link : CVE-2019-9610
Mitre link : CVE-2019-9610
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
ofcms_project
- ofcms