Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2v2m-jqm3-cq3x

Опубликовано: 08 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in SquaredUp for SCOM 5.2.1.6654. The Download Log feature in System / Maintenance was susceptible to a local file inclusion vulnerability (when processing remote input in the log files downloaded by an authenticated administrator user), leading to the ability to read arbitrary files on the server filesystems.

An issue was discovered in SquaredUp for SCOM 5.2.1.6654. The Download Log feature in System / Maintenance was susceptible to a local file inclusion vulnerability (when processing remote input in the log files downloaded by an authenticated administrator user), leading to the ability to read arbitrary files on the server filesystems.

EPSS

Процентиль: 40%
0.00184
Низкий

Связанные уязвимости

CVSS3: 4.9
nvd
около 4 лет назад

An issue was discovered in SquaredUp for SCOM 5.2.1.6654. The Download Log feature in System / Maintenance was susceptible to a local file inclusion vulnerability (when processing remote input in the log files downloaded by an authenticated administrator user), leading to the ability to read arbitrary files on the server filesystems.

EPSS

Процентиль: 40%
0.00184
Низкий