CVE-2023-25345

CVSS V2 None CVSS V3 None
Description
Directory traversal vulnerability in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to read arbitrary files via the include or extends tags.
Overview
  • CVE ID
  • CVE-2023-25345
  • Assigner
  • cve@mitre.org
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-03-15T20:15:10
  • Last Modified Date
  • 2023-03-18T03:50:49
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:swig-templates_project:swig-templates:*:*:*:*:*:*:*:* 1 OR 2.0.4
cpe:2.3:a:swig_project:swig:*:*:*:*:*:*:*:* 1 OR 1.4.2
References
Reference URL Reference Tags
https://github.com/node-swig/swig-templates/issues/88 Exploit Issue Tracking
History
Created Old Value New Value Data Type Notes
2023-04-17 06:31:22 Added to TrackCVE
2023-04-17 06:31:24 Weakness Enumeration new