CVE-2013-7300 Information
Feb 14, 2021
cve
Description
Absolute path traversal vulnerability in cantata before 1.2.2 allows local users to read arbitrary files via a full pathname in a request to the internal httpd server. NOTE: this vulnerability can be leveraged by remote attackers using CVE-2013-7301.
Reference
http://seclists.org/oss-sec/2014/q1/121 http://seclists.org/oss-sec/2014/q1/124 https://code.google.com/p/cantata/issues/detail?id=356 https://exchange.xforce.ibmcloud.com/vulnerabilities/90580
Share on: