In Ortus TestBox 2.4.0 through 4.1.0, unvalidated query string parameters to test-browser/index.cfm allow directory traversal.
References
| Link | Resource |
|---|---|
| https://www.exploit-db.com/exploits/49078 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2020-11-23 18:15
Updated : 2020-12-01 09:22
NVD link : CVE-2020-15928
Mitre link : CVE-2020-15928
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
ortussolutions
- testbox


