Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2rh3-6r34-qvm7

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Absolute path traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to read arbitrary files via a /FSF/CMD request with a full pathname in a PATH element of an SRS record.

Absolute path traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to read arbitrary files via a /FSF/CMD request with a full pathname in a PATH element of an SRS record.

EPSS

Процентиль: 99%
0.75558
Высокий

Дефекты

CWE-22

Связанные уязвимости

nvd
около 13 лет назад

Absolute path traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to read arbitrary files via a /FSF/CMD request with a full pathname in a PATH element of an SRS record.

EPSS

Процентиль: 99%
0.75558
Высокий

Дефекты

CWE-22