Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-48q2-hf73-8f5p

Опубликовано: 09 мая 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.3

Описание

Improper Limitation of a Pathname caused a Path Traversal vulnerability in Sparx Systems Pro Cloud Server.

This vulnerability is present in logview.php and it allows reading arbitrary files on the filesystem. 

Logview is accessible on Pro Cloud Server Configuration interface.

This issue affects Pro Cloud Server: earlier than 6.0.165.

Improper Limitation of a Pathname caused a Path Traversal vulnerability in Sparx Systems Pro Cloud Server.

This vulnerability is present in logview.php and it allows reading arbitrary files on the filesystem. 

Logview is accessible on Pro Cloud Server Configuration interface.

This issue affects Pro Cloud Server: earlier than 6.0.165.

EPSS

Процентиль: 42%
0.00202
Низкий

8.3 High

CVSS4

Дефекты

CWE-20

Связанные уязвимости

nvd
9 месяцев назад

Improper Limitation of a Pathname caused a Path Traversal vulnerability in Sparx Systems Pro Cloud Server. This vulnerability is present in logview.php and it allows reading arbitrary files on the filesystem.  Logview is accessible on Pro Cloud Server Configuration interface. This issue affects Pro Cloud Server: earlier than 6.0.165.

EPSS

Процентиль: 42%
0.00202
Низкий

8.3 High

CVSS4

Дефекты

CWE-20