Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-53rw-gcgw-2723

Опубликовано: 06 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hosts a web service using an operation with improper write access control that could allow directory listing in any folder accessible to the account assigned to the website’s application pool.

A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hosts a web service using an operation with improper write access control that could allow directory listing in any folder accessible to the account assigned to the website’s application pool.

EPSS

Процентиль: 50%
0.00269
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-22
CWE-23

Связанные уязвимости

CVSS3: 5.3
nvd
около 3 лет назад

A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hosts a web service using an operation with improper write access control that could allow directory listing in any folder accessible to the account assigned to the website’s application pool.

EPSS

Процентиль: 50%
0.00269
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-22
CWE-23