Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5jqh-v34h-7q6v

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

ECOA BAS controller suffers from a path traversal vulnerability, causing arbitrary files disclosure. Using the specific POST parameter, unauthenticated attackers can remotely disclose arbitrary files on the affected device and disclose sensitive and system information.

ECOA BAS controller suffers from a path traversal vulnerability, causing arbitrary files disclosure. Using the specific POST parameter, unauthenticated attackers can remotely disclose arbitrary files on the affected device and disclose sensitive and system information.

EPSS

Процентиль: 100%
0.89647
Высокий

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.5
nvd
больше 4 лет назад

ECOA BAS controller suffers from a path traversal vulnerability, causing arbitrary files disclosure. Using the specific POST parameter, unauthenticated attackers can remotely disclose arbitrary files on the affected device and disclose sensitive and system information.

EPSS

Процентиль: 100%
0.89647
Высокий

Дефекты

CWE-22