MEDIUM
Smarty before 3.1.33-dev-4 allows attackers to bypass the trusted_dir protection mechanism via a file:./../ substring in an include statement
Published Sep 11, 2018
5.9
MEDIUMCVSS 3.0
EPSS 2.66%
Description
Affected products
Remediation
References (6)
Change history (0)
No recorded changes yet.