๐Ÿ” CVE Alert

CVE-2023-2984

MEDIUM 6.3

Path Traversal: '\..\filename' in pimcore/pimcore

CVSS Score
6.3
EPSS Score
0.0%
EPSS Percentile
0th

Path Traversal: '\..\filename' in GitHub repository pimcore/pimcore prior to 10.5.22.

CWE CWE-29
Vendor pimcore
Product pimcore/pimcore
Published May 30, 2023
Last Updated Jan 13, 2025
Stay Ahead of the Next One

Get instant alerts for pimcore pimcore/pimcore

Be the first to know when new medium vulnerabilities affecting pimcore pimcore/pimcore are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

Affected Versions

pimcore / pimcore/pimcore
unspecified < 10.5.22

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
huntr.dev: https://huntr.dev/bounties/5df8b951-e2f1-4548-a7e3-601186e1b191 github.com: https://github.com/pimcore/pimcore/commit/e8dbc4da58ae86618bceb67ed35ce23e5e54d2ed