Mautic
cpe:2.3:a:mautic:mautic:*:*:*:*:*:*:*
- < 5.2.3
A file placement vulnerability has been identified in Mautic's asset upload feature, allowing users to upload files to directories outside of the designated temporary directory. This issue arises from improper limitations on pathnames, which could lead to unintended file placements on the server.
Exploitation of this vulnerability could result in files being uploaded to unauthorized directories on the server, potentially leading to further security issues.
Users are advised to update to version 5.2.3 or later.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.