Path traversal in Roxy-WI - CVE-2023-25803
Published: March 12, 2023 / Updated: April 20, 2026
Roxy-WI
Roxy-WI
Description
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to path traversal in file handling functionality when processing crafted file path input. A remote attacker can supply a specially crafted path to disclose sensitive information.
Server-side files can be retrieved.