First published · Last updated
CVE-2021-3199: ONLYOFFICE Docs Server Path Traversal Vulnerability
The source reports a path traversal vulnerability in ONLYOFFICE Docs Server that could allow remote code execution. It calls for applying mitigations in accordance with vendor instructions and applicable CISA guidance.
Why it matters
The reported vulnerability could allow remote code execution, and the source recommends mitigation or discontinuing use if mitigations are unavailable.
Categories: technology
Generated scores
Scores are based on the cited reporting and use a 1–10 scale. Read the methodology.
- Confidence
- 5/10
- Geographic reach
- 1/10
- Global importance
- 2/10
- Impact magnitude
- 3/10
- Positivity
- 3/10
- Urgency
- 4/10
Sources
Report an issueRead our editorial process and corrections policy.

