CVE-2020-8161

HIGH8.6EPSS 0.91%

Directory traversal in Rack::Directory app bundled with Rack

Published: 7/6/2020Modified: 4/28/2026
Also known as:GHSA-5f9h-9pjv-v6j7DEBIAN-CVE-2020-8161

Description

A directory traversal vulnerability exists in rack < 2.2.0 that allows an attacker perform directory traversal vulnerability in the Rack::Directory app that is bundled with Rack which could result in information disclosure.

Affected packages (5)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH8.6CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N

References (10)