Description
Sonatype Nexus Repository Manager 3.x before 3.30.1 allows a remote attacker to get a list of files and directories that exist in a UI-related folder via directory traversal (no customer-specific data is exposed).
Remediation
References
Related Vulnerabilities
Oracle Database Server Other Vulnerability (CVE-2007-5513)
WordPress Plugin Social Sharing-Sassy Social Share Cross-Site Scripting (3.3.44)
WordPress Plugin WooCommerce Upload Files Arbitrary File Upload (59.3)
MySQL CVE-2017-10320 Vulnerability (CVE-2017-10320)
WordPress Plugin Magic Fields Arbitrary File Upload (1.6.3.2)