{"id":"GHSA-wfm3-gq9h-mrjm","summary":"Appwrite Directory Traversal vulnerability","details":"The ACME-challenge endpoint in Appwrite 0.5.0 through 0.12.x before 0.12.2 allows remote attackers to read arbitrary local files via ../ directory traversal. In order to be vulnerable, `APP_STORAGE_CERTIFICATES/.well-known/acme-challenge` must exist on disk. (This pathname is automatically created if the user chooses to install Let's Encrypt certificates via Appwrite.)","aliases":["CVE-2022-25377"],"modified":"2024-08-21T22:04:35.666645Z","published":"2024-02-23T00:30:33Z","database_specific":{"github_reviewed_at":"2024-02-23T17:45:23Z","nvd_published_at":"2024-02-22T22:15:47Z","cwe_ids":["CWE-22"],"severity":"HIGH","github_reviewed":true},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-25377"},{"type":"WEB","url":"https://github.com/appwrite/appwrite/pull/2780"},{"type":"WEB","url":"https://github.com/appwrite/appwrite/commit/892f6fa4ba0d44e2435ffad1a84542400cfb7a9b"},{"type":"WEB","url":"https://dubell.io/unauthenticated-lfi-in-appwrite-0.5.0-0.12.1"},{"type":"PACKAGE","url":"https://github.com/appwrite/appwrite"},{"type":"WEB","url":"https://github.com/appwrite/appwrite/blob/0.12.0/app/controllers/general.php#L539"},{"type":"WEB","url":"https://github.com/appwrite/appwrite/releases/tag/0.12.2"}],"affected":[{"package":{"name":"appwrite/server-ce","ecosystem":"Packagist","purl":"pkg:composer/appwrite/server-ce"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0.5.0"},{"fixed":"0.12.2"}]}],"versions":["0.10.0","0.10.1","0.10.2","0.10.3","0.10.4","0.11.0","0.11.1","0.11.2","0.12.0","0.12.1","0.5.0","0.5.1","0.5.2","0.5.3","0.6.0","0.6.1","0.6.2","0.7.0","0.7.1","0.7.2","0.8.0","0.9","0.9.1","0.9.2","0.9.3","0.9.4"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2024/02/GHSA-wfm3-gq9h-mrjm/GHSA-wfm3-gq9h-mrjm.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"},{"type":"CVSS_V4","score":"CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N"}]}