An arbitrary file deletion vulnerability was discovered on htmly v2.7.5 which allows remote attackers to use any absolute path to delete any file in the server should they gain Administrator privileges.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-16506 | An arbitrary file deletion vulnerability was discovered on htmly v2.7.5 which allows remote attackers to use any absolute path to delete any file in the server should they gain Administrator privileges. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://github.com/danpros/htmly/issues/412 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T15:05:11.592Z
Reserved: 2020-08-13T00:00:00
Link: CVE-2020-23766
No data.
Status : Modified
Published: 2021-05-21T18:15:07.923
Modified: 2024-11-21T05:14:04.360
Link: CVE-2020-23766
No data.
OpenCVE Enrichment
No data.
EUVD