CVE-2017-16220: Wind-Mvc Project Wind-Mvc
High severity, CVSS 7.5. EPSS: 2% chance of exploitation in the next 30 days.
wind-mvc is an mvc framework. wind-mvc is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Affected products
- Wind-Mvc Project Wind-Mvc: any version
Published 2018-06-07. Last modified 2026-06-17.