BlogEngine.NET theme Cookie directory traversal vulnerability

Summary

BlogEngine.NET is a free, open source blogging system.An attacker can use this vulnerability to access locations outside the restricted directory.


Solution

At present, the manufacturer does not provide the repair plan, please pay attention to the manufacturer's home page:

https://blogengine.io/