Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-586j-jr5f-gx4j

Опубликовано: 14 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.9
CVSS3: 6.1

Описание

CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause critical files overwritten with text data when a Web Admin user alters the POST /REST/upssleep request payload.

CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause critical files overwritten with text data when a Web Admin user alters the POST /REST/upssleep request payload.

EPSS

Процентиль: 11%
0.00204
Низкий

6.9 Medium

CVSS4

6.1 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 6.1
nvd
4 месяца назад

CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause critical files overwritten with text data when a Web Admin user alters the POST /REST/upssleep request payload.

CVSS3: 6.1
fstec
4 месяца назад

Уязвимость программного обеспечения для управления источниками бесперебойного питания (ИПБ) PowerChute Serial Shutdown, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю записывать произвольные файлы

EPSS

Процентиль: 11%
0.00204
Низкий

6.9 Medium

CVSS4

6.1 Medium

CVSS3

Дефекты

CWE-22