Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2crh-j3fx-xcfh

Опубликовано: 22 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Dell EMC AppSync versions from 3.9 to 4.3 contain a path traversal vulnerability in AppSync server. A remote unauthenticated attacker may potentially exploit this vulnerability to gain unauthorized read access to the files stored on the server filesystem, with the privileges of the running web application.

Dell EMC AppSync versions from 3.9 to 4.3 contain a path traversal vulnerability in AppSync server. A remote unauthenticated attacker may potentially exploit this vulnerability to gain unauthorized read access to the files stored on the server filesystem, with the privileges of the running web application.

EPSS

Процентиль: 70%
0.00666
Низкий

7.5 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.5
nvd
больше 3 лет назад

Dell EMC AppSync versions from 3.9 to 4.3 contain a path traversal vulnerability in AppSync server. A remote unauthenticated attacker may potentially exploit this vulnerability to gain unauthorized read access to the files stored on the server filesystem, with the privileges of the running web application.

EPSS

Процентиль: 70%
0.00666
Низкий

7.5 High

CVSS3

Дефекты

CWE-22