Directory Traversal Vulnerability in Bludit by Bludit
CVE-2020-15026
4.9MEDIUM
What is CVE-2020-15026?
In Bludit version 3.12.0, a directory traversal vulnerability exists that allows authenticated administrators to exploit the /plugin-backup-download endpoint. By manipulating the file path, attackers can access arbitrary files on the server, posing a serious risk to sensitive information. This vulnerability highlights the importance of validating user input and securing file download functionalities in web applications.
