Directory traversal vulnerability in GROWI versions prior to v4.2.3 (v4.2 Series), GROWI versions prior to v4.1.12 (v4.1 Series), and GROWI v3 series and earlier GROWI versions prior to v4.2.3 (v4.2 Series), GROWI versions prior to v4.1.12 (v4.1 Series), and GROWI v3 series and earlier allows remote attackers to alter the data by uploading a specially crafted file.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2020-12-16T07:45:19
Updated: 2024-08-04T08:39:25.766Z
Reserved: 2020-01-06T00:00:00
Link: CVE-2020-5683
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-12-16T08:15:14.030
Modified: 2024-11-21T05:34:28.483
Link: CVE-2020-5683
Redhat
No data.