Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5qww-32pm-m8vq

Опубликовано: 04 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.8

Описание

Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in webapi component in Synology USB Copy before 2.2.0-1086 allows remote authenticated users to read or write arbitrary files via unspecified vectors.

Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in webapi component in Synology USB Copy before 2.2.0-1086 allows remote authenticated users to read or write arbitrary files via unspecified vectors.

EPSS

Процентиль: 39%
0.00175
Низкий

3.8 Low

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 5.5
nvd
больше 3 лет назад

Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in webapi component in Synology USB Copy before 2.2.0-1086 allows remote authenticated users to read or write arbitrary files via unspecified vectors.

EPSS

Процентиль: 39%
0.00175
Низкий

3.8 Low

CVSS3

Дефекты

CWE-22