Path Traversal Vulnerability in parisneo/lollms-webui
Published Jun 2, 2024
7.5
HIGHCVSS 3.0
EPSS 0.60%
Description
A path traversal vulnerability exists in the parisneo/lollms-webui, specifically within the 'copy_to_custom_personas' endpoint in the 'lollms_personalities_infos.py' file. This vulnerability allows attackers to read arbitrary files by manipulating the 'category' and 'name' parameters during the 'Copy to custom personas folder for editing' process. By inserting '../' sequences in these parameters, attackers can traverse the directory structure and access files outside of the intended directory. Successful exploitation results in unauthorized access to sensitive information.
Affected products
-
- Version unspecifiedStatusaffectedConstraints<=latest
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Parisneo | Parisneo/lollms-Webui | n/a |
|
- < 9.4
-
- Version 0StatusaffectedConstraints<*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Parisneo | Lollms-Webui | n/a |
|
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (1)
- https://huntr.com/bounties/e585f1dd-a026-4419-8f42-5835e85fad9e ExploitIssue TrackingPatchThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://huntr.com/bounties/e585f1dd-a026-4419-8f42-5835e85fad9e | ExploitIssue TrackingPatchThird Party Advisory |
Change history (0)
No recorded changes yet.