Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-48x7-56r4-ghvr

Опубликовано: 09 фев. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Relative Path Traversal vulnerability in YugaByte, Inc. Yugabyte Managed (PlatformReplicationManager.Java modules) allows Path Traversal. This vulnerability is associated with program files PlatformReplicationManager.Java. This issue affects Yugabyte Managed: from 2.0 through 2.13.

Relative Path Traversal vulnerability in YugaByte, Inc. Yugabyte Managed (PlatformReplicationManager.Java modules) allows Path Traversal. This vulnerability is associated with program files PlatformReplicationManager.Java. This issue affects Yugabyte Managed: from 2.0 through 2.13.

EPSS

Процентиль: 27%
0.00098
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-22
CWE-23

Связанные уязвимости

CVSS3: 6.7
nvd
почти 3 года назад

The High Availability functionality of Yugabyte Anywhere can be abused to write arbitrary files through the backup upload endpoint by using path traversal characters. This vulnerability is associated with program files PlatformReplicationManager.Java. This issue affects YugabyteDB Anywhere: from 2.0.0.0 through 2.13.0.0

CVSS3: 6.7
debian
почти 3 года назад

The High Availability functionality of Yugabyte Anywhere can be abused ...

EPSS

Процентиль: 27%
0.00098
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-22
CWE-23