CVE-2021-43685
9.8CRITICALlibretime hv3.0.0-alpha.10 is affected by a path manipulation vulnerability in /blob/master/legacy/application/modules/rest/controllers/ShowImageController.php through the rename function.
Publicado: 12/1/2021Actualizado: 11/21/2024
Descripción
libretime hv3.0.0-alpha.10 is affected by a path manipulation vulnerability in /blob/master/legacy/application/modules/rest/controllers/ShowImageController.php through the rename function.
Análisis IAImpulsado por IA
Productos Afectados
libretimelibretime_hv
3.0.0
Referencias
- https://github.com/LibreTime/libretime/issues/1437Broken LinkThird Party Advisory
- https://github.com/LibreTime/libretime/issues/1437Broken LinkThird Party Advisory