Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6ffj-6mvq-rpmh

Опубликовано: 16 фев. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A Directory Traversal vulnerability exists in Solari di Udine TermTalk Server (TTServer) 3.24.0.2, which lets an unauthenticated malicious user gain access to the files on the remote system by gaining access to the relative path of the file they want to download (http://url:port/file?valore).

A Directory Traversal vulnerability exists in Solari di Udine TermTalk Server (TTServer) 3.24.0.2, which lets an unauthenticated malicious user gain access to the files on the remote system by gaining access to the relative path of the file they want to download (http://url:port/file?valore).

EPSS

Процентиль: 99%
0.73487
Высокий

7.5 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.5
nvd
почти 4 года назад

A Directory Traversal vulnerability exists in Solari di Udine TermTalk Server (TTServer) 3.24.0.2, which lets an unauthenticated malicious user gain access to the files on the remote system by gaining access to the relative path of the file they want to download (http://url:port/file?valore).

EPSS

Процентиль: 99%
0.73487
Высокий

7.5 High

CVSS3

Дефекты

CWE-22