Absolute path traversal vulnerability in cantata before 1.2.2 allows local users to read arbitrary files via a full pathname in a request to the internal httpd server. NOTE: this vulnerability can be leveraged by remote attackers using CVE-2013-7301.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2014-02-02T00:00:00
Updated: 2024-08-06T18:01:20.434Z
Reserved: 2014-01-20T00:00:00
Link: CVE-2013-7300
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-02-02T00:55:04.740
Modified: 2017-08-29T01:34:06.983
Link: CVE-2013-7300
Redhat
No data.