Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4w6x-hxgr-c3q5

Опубликовано: 17 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.6

Описание

The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulnerability allows an unauthenticated user to perform arbitrary file deletion and leak sensitive information.

The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulnerability allows an unauthenticated user to perform arbitrary file deletion and leak sensitive information.

EPSS

Процентиль: 88%
0.03379
Низкий

7.6 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.6
nvd
около 2 лет назад

The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulnerability allows an unauthenticated user to perform arbitrary file deletion and leak sensitive information.

CVSS3: 7.6
fstec
больше 2 лет назад

Уязвимость метода deleteTransferFile программного средства разграничения доступа SolarWinds Access Rights Manager (ARM), позволяющая нарушителю получить доступ на чтение, изменение или удаление данных

EPSS

Процентиль: 88%
0.03379
Низкий

7.6 High

CVSS3

Дефекты

CWE-22