Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4g5h-vp8c-mrhf

Опубликовано: 15 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

SAF-T Framework Transaction SAFTN_G allows an attacker to exploit insufficient validation of path information provided by normal user, leading to full server directory access. The attacker can see the whole filesystem structure but cannot overwrite, delete, or corrupt arbitrary files on the server.

SAF-T Framework Transaction SAFTN_G allows an attacker to exploit insufficient validation of path information provided by normal user, leading to full server directory access. The attacker can see the whole filesystem structure but cannot overwrite, delete, or corrupt arbitrary files on the server.

EPSS

Процентиль: 64%
0.00467
Низкий

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.7
nvd
около 4 лет назад

SAF-T Framework Transaction SAFTN_G allows an attacker to exploit insufficient validation of path information provided by normal user, leading to full server directory access. The attacker can see the whole filesystem structure but cannot overwrite, delete, or corrupt arbitrary files on the server.

EPSS

Процентиль: 64%
0.00467
Низкий

Дефекты

CWE-22