CVE-2015-8747

CRITICAL10.0EPSS 1.8%

radicale - security update

Published: 5/17/2022Modified: 4/28/2026
Also known as:DEBIAN-CVE-2015-8747

Description

The multifilesystem storage backend in Radicale before 1.1 allows remote attackers to read or write to arbitrary files via a crafted component name.

Affected packages (5)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1CRITICAL10.0CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N

References (16)