Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Steffen Weinreich

#35651of 53,633
7.5Total CVSS
Vulnerabilities · 1
PT-2023-19743
7.5
2023-08-08
Foswiki · Foswiki · CVE-2023-24698
**Name of the Vulnerable Software and Affected Versions** Foswiki versions 2.1.7 and below **Description** Insufficient parameter validation in the Foswiki::Sandbox component allows attackers to perform a directory traversal via supplying a crafted web request. **Recommendations** For versions 2.1.7 and below, update to a version above 2.1.7 to resolve the issue. As a temporary workaround, consider restricting access to the Foswiki::Sandbox component until a patch is available.