QID 981382
QID 981382: Dotnet (nuget) Security Update for elFinder.AspNet (GHSA-pjxv-w3qj-j8m3)
This affects the package elFinder.AspNet before 1.1.1.
The user-controlled file name is not properly sanitized before it is used to create a file system path.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-pjxv-w3qj-j8m3 for updates pertaining to this vulnerability.
Vendor References
- GHSA-pjxv-w3qj-j8m3 -
github.com/advisories/GHSA-pjxv-w3qj-j8m3
CVEs related to QID 981382
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-pjxv-w3qj-j8m3 | elFinder.AspNet |
|