vendor:
DoceboLMS
by:
Unknown
7.5
CVSS
HIGH
Directory Traversal
22
CWE
Product Name: DoceboLMS
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Unknown
DoceboLMS Directory Traversal Vulnerability
DoceboLMS is prone to a directory traversal vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.An attacker can exploit this vulnerability to retrieve arbitrary files from the vulnerable system in the context of the Web server process. Information obtained may aid in further attacks; other attacks are also possible.
Mitigation:
Sanitize user-supplied input properly to prevent directory traversal attacks.