Directory Traversal Vulnerability in BloofoxCMS by Bloofox
CVE-2020-36142
6.5MEDIUM
What is CVE-2020-36142?
BloofoxCMS version 0.5.2.1 is susceptible to a directory traversal vulnerability that allows attackers to gain unauthorized access to the filesystem. This issue arises when an attacker manipulates the 'fileurl' parameter by inserting '../' payloads, potentially exposing sensitive files that should remain inaccessible. Users of BloofoxCMS are advised to review their installations and implement necessary security measures to mitigate risks.
