CVE-2023-27534 | cURL up to 7.x SFTP /~2/foo path traversal (FEDORA-2023-7e7414e64d / EUVD-2023-31289)
A vulnerability categorized as critical has been discovered in cURL up to 7.x. Affected is an unknown function of the file /~2/foo of the component SFTP. The manipulation results in path traversal.
This vulnerability is reported as CVE-2023-27534. The attacker must have access to the local network to execute the attack. No exploit exists.
It is advisable to upgrade the affected component.