Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6crc-x5g7-hpmc

Опубликовано: 31 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

Emerson XWEB 300D EVO 3.0.7--3ee403 is affected by: unauthenticated arbitrary file deletion due to path traversal. An attacker can browse and delete files without any authentication due to incorrect access control and directory traversal.

Emerson XWEB 300D EVO 3.0.7--3ee403 is affected by: unauthenticated arbitrary file deletion due to path traversal. An attacker can browse and delete files without any authentication due to incorrect access control and directory traversal.

EPSS

Процентиль: 84%
0.0225
Низкий

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 9.8
nvd
около 4 лет назад

Emerson XWEB 300D EVO 3.0.7--3ee403 is affected by: unauthenticated arbitrary file deletion due to path traversal. An attacker can browse and delete files without any authentication due to incorrect access control and directory traversal.

EPSS

Процентиль: 84%
0.0225
Низкий

Дефекты

CWE-22