VYPR
High severity8.8NVD Advisory· Published Jun 20, 2019· Updated Jun 17, 2026

CVE-2019-12901

CVE-2019-12901

Description

Pydio Cells before 1.5.0 fails to neutralize '../' elements, allowing an attacker with minimum privilege to Upload files to, and Delete files/folders from, an unprivileged directory, leading to Privilege escalation.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:pydio:cells:*:*:*:*:*:*:*:*
    Range: <1.5.0
  • Pydio/Cellsdescription
  • Pydio/Pydiollm-fuzzy
    Range: <1.5.0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.