Loading
Erlang/OTP 22.3.x before 22.3.4.6 and 23.x before 23.1 allows Directory Traversal. An attacker can send a crafted HTTP request to read arbitrary files, if httpd in the inets application is used.
Use CWE-22, Erlang vendor hub and Erlang\/Otp product page to widen CVE-2020-25623 into its surrounding weakness, vendor, and product context.