Path Traversal Vulnerability in MapServer
CVE-2021-32062
5.3MEDIUM
What is CVE-2021-32062?
MapServer versions prior to 7.0.8, 7.1.x, 7.2.3, 7.4.5, 7.6.3 are vulnerable due to improper enforcement of MS_MAP_NO_PATH and MS_MAP_PATTERN restrictions. This can permit unauthorized access to mapfiles, potentially leading to exposure of sensitive information or systems. Users are advised to update to the latest versions to safeguard against these security concerns. For detailed version changes, refer to the official MapServer changelogs.
