Path Traversal Vulnerability in Blogifier 2.3 before 2019-05-11

Path Traversal Vulnerability in Blogifier 2.3 before 2019-05-11

CVE-2019-12277 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

Blogifier 2.3 before 2019-05-11 does not properly restrict APIs, as demonstrated by missing checks for .. in a pathname.

Learn more about our Api Penetration Testing.