Path traversal in baserCMS - #VU152764
Published: September 29, 2026
Vulnerability details
The vulnerability allows a remote user to disclose sensitive information.
The vulnerability exists due to improper limitation of a pathname to a restricted directory in UploaderFilesController::view_limited_file() when handling filename path parameters. A remote privileged user can submit a crafted path traversal request to disclose sensitive information.
Route parameter delivery of traversal sequences requires double encoding.