CVE-2021-44665 | Xerte up to 3.10.3 Project File download.php pathname traversal (EDB-50794)
A vulnerability has been found in Xerte up to 3.10.3 and classified as critical. This vulnerability affects unknown code of the file download.php of the component Project File Handler. The manipulation leads to pathname traversal.
This vulnerability was named CVE-2021-44665. The attack needs to be done within the local network. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.