Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2x53-jv7f-c2x5

Опубликовано: 17 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.6

Описание

The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulnerability allows an unauthenticated user to perform arbitrary file deletion and leak sensitive information.

The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulnerability allows an unauthenticated user to perform arbitrary file deletion and leak sensitive information.

EPSS

Процентиль: 78%
0.01893
Низкий

7.6 High

CVSS3

Дефекты

CWE-22
CWE-287

Связанные уязвимости

CVSS3: 7.6
nvd
около 2 лет назад

The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulnerability allows an unauthenticated user to perform arbitrary file deletion and leak sensitive information.

CVSS3: 7.6
fstec
больше 2 лет назад

Уязвимость метода deleteTransferFile программного средства разграничения доступа SolarWinds Access Rights Manager (ARM), позволяющая нарушителю получить доступ на чтение, изменение или удаление данных и повысить свои привилегии

EPSS

Процентиль: 78%
0.01893
Низкий

7.6 High

CVSS3

Дефекты

CWE-22
CWE-287