Directory Traversal Vulnerability in dotCMS by dotCMS
CVE-2020-6754

9.8CRITICAL

Key Information:

Vendor

Dotcms

Status
Vendor
CVE Published:
5 February 2020

What is CVE-2020-6754?

A vulnerability in dotCMS before version 5.2.4 allows directory traversal, potentially permitting unauthorized access to system files within the $TOMCAT_HOME/webapps/ROOT/assets directory, which should be secured. An attacker could exploit this flaw to read sensitive files or execute code due to improper access controls. The vulnerability also facilitates the uploading of temporary files, such as .jsp files, into the /webapps/ROOT/assets/tmp_upload directory, creating a risk for remote command execution with the permissions of the user running the dotCMS application.

References

EPSS Score

75% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2020-6754 : Directory Traversal Vulnerability in dotCMS by dotCMS