Description
Directory traversal vulnerability in the dotTailLogServlet in dotCMS before 3.5.1 allows remote authenticated administrators to read arbitrary files via a .. (dot dot) in the fileName parameter.
Remediation
References
Related Vulnerabilities
Joomla CVE-2022-27911 Vulnerability (CVE-2022-27911)
WordPress Plugin WordPress Infinite Scroll-Ajax Load More Cross-Site Scripting (5.6.0.2)
MyBB Cryptographic Issues Vulnerability (CVE-2010-4626)
MySQL CVE-2021-2352 Vulnerability (CVE-2021-2352)
WordPress Plugin UserPro-Community and User Profile Cross-Site Scripting (4.9.23)