CVE-2018-20635

PHP Scripts Mall Advance B2B Script 2.1.4 has directory traversal via a direct request for a listing of an image directory such as an assets/ directory.
References
Link Resource
https://gkaim.com/cve-2018-20635-vikas-chaudhary/ Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:advance_b2b_script_project:advance_b2b_script:2.1.4:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-03-21 16:00

Updated : 2024-02-04 20:20


NVD link : CVE-2018-20635

Mitre link : CVE-2018-20635

CVE.ORG link : CVE-2018-20635


JSON object : View

Products Affected

advance_b2b_script_project

  • advance_b2b_script
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')