Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6vhp-2xhp-9h5r

Опубликовано: 31 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

Xorcom CompletePBX is vulnerable to an authenticated path traversal, allowing for arbitrary file reads via the Backup and Restore functionality.This issue affects CompletePBX: through 5.2.35.

Xorcom CompletePBX is vulnerable to an authenticated path traversal, allowing for arbitrary file reads via the Backup and Restore functionality.This issue affects CompletePBX: through 5.2.35.

EPSS

Процентиль: 99%
0.68795
Средний

4.9 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 6.5
nvd
10 месяцев назад

Xorcom CompletePBX is vulnerable to an authenticated path traversal, allowing for arbitrary file reads via the Backup and Restore functionality.This issue affects CompletePBX: through 5.2.35.

EPSS

Процентиль: 99%
0.68795
Средний

4.9 Medium

CVSS3

Дефекты

CWE-22