Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2826-w8xh-frpw

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

Directory traversal vulnerability in the web-based management site on the Intellinet NFC-30ir IP Camera with firmware LM.1.6.16.05 allows remote attackers to read arbitrary files via a request to a vendor-supplied CGI script that is used to read HTML text file, but that does not do any URI/path sanitization.

Directory traversal vulnerability in the web-based management site on the Intellinet NFC-30ir IP Camera with firmware LM.1.6.16.05 allows remote attackers to read arbitrary files via a request to a vendor-supplied CGI script that is used to read HTML text file, but that does not do any URI/path sanitization.

EPSS

Процентиль: 92%
0.07798
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 4.9
nvd
больше 8 лет назад

Directory traversal vulnerability in the web-based management site on the Intellinet NFC-30ir IP Camera with firmware LM.1.6.16.05 allows remote attackers to read arbitrary files via a request to a vendor-supplied CGI script that is used to read HTML text file, but that does not do any URI/path sanitization.

EPSS

Процентиль: 92%
0.07798
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-22