High severity7.5NVD Advisory· Published Aug 8, 2023· Updated Jun 17, 2026
CVE-2023-24698
CVE-2023-24698
Description
Insufficient parameter validation in the Foswiki::Sandbox component of Foswiki v2.1.7 and below allows attackers to perform a directory traversal via supplying a crafted web request.
Affected products
3- Foswiki/Foswiki::Sandboxdescription
Patches
Vulnerability mechanics
References
1- foswiki.org/Support/SecurityAlert-CVE-2023-24698nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.