Planet Briefing

First published · Last updated

CVE-2021-3199: ONLYOFFICE Docs Server Path Traversal Vulnerability

The source reports a path traversal vulnerability in ONLYOFFICE Docs Server that could allow remote code execution. It calls for applying mitigations in accordance with vendor instructions and applicable CISA guidance.

Why it matters

The reported vulnerability could allow remote code execution, and the source recommends mitigation or discontinuing use if mitigations are unavailable.

Categories: technology

Generated scores

Scores are based on the cited reporting and use a 1–10 scale. Read the methodology.

Confidence
5/10
Geographic reach
1/10
Global importance
2/10
Impact magnitude
3/10
Positivity
3/10
Urgency
4/10

Sources

Report an issue

Read our editorial process and corrections policy.