Threat Intel

v0.1

← CVEs

CVE-2023-53944

MED 6.5
Published
2025-12-18
Last Modified
2025-12-26
Affected Apps
12
Affected Devices
25
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EasyPHP Webserver 14.1 contains a path traversal vulnerability that allows remote users with low privileges to access files outside the document root by bypassing SecurityManager restrictions. Attackers can send GET requests with encoded directory traversal sequences like /..%5c..%5c to read system files such as /windows/win.ini.
References 4