The Syncfusion EJ2 ASPCore File... CVE-2023-26564

- AV AC AU C I A
发布: 2023-07-12
修订: 2023-07-26

The Syncfusion EJ2 ASPCore File Provider 3ac357f is vulnerable to Models/PhysicalFileProvider.cs directory traversal. As a result, an unauthenticated attacker can list files within a directory, download any file, or upload any file to any directory accessible by the web server.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息