PT-2023-24939 · Gibbon · Gibbon

Published

2023-06-29

·

Updated

2024-09-21

·

CVE-2023-34598

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Gibbon version 25.0.0
Description The issue allows for a Local File Inclusion (LFI) where it is possible to include the content of several files present in the installation folder in the server's response.
Recommendations For Gibbon version 25.0.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-34598

Affected Products

Gibbon