CVE-2020-27514

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
11/08/2023
Last modified:
18/08/2023

Description

Directory Traversal vulnerability in delete function in admin.api.TemplateController in ZrLog version 2.1.15, allows remote attackers to delete arbitrary files and cause a denial of service (DoS).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:zrlog:zrlog:2.1.5:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools