Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-454v-7vh4-hcxm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Pydio Cells 2.0.4 allows an authenticated user to write or overwrite existing files in another user’s personal and cells folders (repositories) by uploading a custom generated ZIP file and leveraging the file extraction feature present in the web application. The extracted files will be placed in the targeted user folders.

Pydio Cells 2.0.4 allows an authenticated user to write or overwrite existing files in another user’s personal and cells folders (repositories) by uploading a custom generated ZIP file and leveraging the file extraction feature present in the web application. The extracted files will be placed in the targeted user folders.

EPSS

Процентиль: 79%
0.01245
Низкий

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 8.1
nvd
больше 5 лет назад

Pydio Cells 2.0.4 allows an authenticated user to write or overwrite existing files in another user’s personal and cells folders (repositories) by uploading a custom generated ZIP file and leveraging the file extraction feature present in the web application. The extracted files will be placed in the targeted user folders.

EPSS

Процентиль: 79%
0.01245
Низкий

Дефекты

CWE-200