mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-28 09:12:08 +00:00
944 B
944 B
CVE-2018-20303
Description
In pkg/tool/path.go in Gogs before 0.11.82.1218, a directory traversal in the file-upload functionality can allow an attacker to create a file under data/sessions on the server, a similar issue to CVE-2018-18925.
POC
Reference
No PoCs from references.
Github
- https://github.com/ARPSyndicate/cvemon
- https://github.com/DarkFunct/CVE_Exploits
- https://github.com/Drakfunc/CVE_Exploits
- https://github.com/Timirepo/CVE_Exploits
- https://github.com/alphaSeclab/sec-daily-2019
- https://github.com/sonatype-nexus-community/ahab
- https://github.com/sonatype-nexus-community/nancy