Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Khalil Shreateh

#39485de 56,337
7.5CVSS total
Vulnerabilidades · 1
PT-2018-4892
7.5
2018-07-10
Dspace · Dspace · CVE-2016-10726
**Name of the Vulnerable Software and Affected Versions** DSpace versions prior to 3.6 DSpace versions 4.x prior to 4.5 DSpace versions 5.x prior to 5.5 **Description** The issue allows directory traversal via the themes/ path in an attack with two or more arbitrary characters and a colon before a pathname. This can be demonstrated by a URI such as "themes/Reference/aa:etc/passwd". **Recommendations** For DSpace versions prior to 3.6, update to version 3.6 or later. For DSpace versions 4.x prior to 4.5, update to version 4.5 or later. For DSpace versions 5.x prior to 5.5, update to version 5.5 or later.