CVE-2018-7490

uWSGI before 2.0.17 mishandles a DOCUMENT_ROOT check during use of the --php-docroot option, allowing directory traversal.
Configurations

Configuration 1

cpe:2.3:a:unbit:uwsgi:*:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

Information

Published : 2018-02-26 10:29

Updated : 2018-03-23 03:24


NVD link : CVE-2018-7490

Mitre link : CVE-2018-7490

Products Affected
No products.
CWE