CVE-2016-20023 - CERT CVE
ID CVE-2016-20023
Sažetak In CKSource CKFinder before 2.5.0.1 for ASP.NET, authenticated users could download any file from the server if the correct path to a file was provided.
Reference
CVSS
Base: 5.0
Impact: 1.4
Exploitability:3.1
Pristup
VektorSloženostAutentikacija
NETWORK LOW LOW
Impact
PovjerljivostCjelovitostDostupnost
LOW NONE NONE
CVSS vektor CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
Zadnje važnije ažuriranje 08-12-2025 - 18:27
Objavljeno 05-12-2025 - 06:16