CyberRota Analysis
AI-GeneratedA path traversal vulnerability exists in the Public Folder Handler of boazsegev facil.io versions up to 0.7.58, specifically in the http_sendfile2 function. This flaw allows remote attackers to manipulate file paths, potentially leading to unauthorized file access. Organizations using affected versions should prioritize remediation, as public exploit code is available.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A security flaw has been discovered in boazsegev facil.io up to 0.7.58. This affects the function http_sendfile2 of the file lib/facil/http/http.c of the component Public Folder Handler. Performing a manipulation results in path traversal. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.