#VU30308 Path traversal in SnapCreek Duplicator - CVE-2020-11738
Published: April 14, 2020 / Updated: June 21, 2024
SnapCreek Duplicator
SnapCreek
Description
The vulnerability allows a remote attacker to perform directory traversal attacks.
The vulnerability exists due to insufficient sanitization of user-supplied passed via . A remote attacker can send a specially crafted HTTP request containing directory traversal sequences and read contents of arbitrary files on the system.