CVE-2021-40960

CRITICAL NUCLEI

Galera WebTemplate 1.0 - Path Traversal

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2021-40960 has a Nuclei detection template available — see the Nuclei card below for the Shodan/FOFA recon queries.

Description

Galera WebTemplate 1.0 is affected by a directory traversal vulnerability that could reveal information from /etc/passwd and /etc/shadow.

Nuclei Templates (1)

Galera WebTemplate 1.0 Directory Traversal
CRITICALby daffainfo

References (2)

Core 2
Core References
Broken Link x_refsource_misc
http://www.galera.com.tr/

Scores

CVSS v3 9.8
EPSS 0.0977
EPSS Percentile 94.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-22
Status published
Products (1)
galera/galera_webtemplate 1.0
Published Oct 01, 2021
Tracked Since Feb 18, 2026