Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6wgv-qx3g-27rc

Опубликовано: 22 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.3

Описание

Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (establish-connection-no-undo modules) allows Absolute Path Traversal.This issue affects Tableau Server: before 2025.1.3, before 2024.2.12, before 2023.3.19.

Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (establish-connection-no-undo modules) allows Absolute Path Traversal.This issue affects Tableau Server: before 2025.1.3, before 2024.2.12, before 2023.3.19.

EPSS

Процентиль: 23%
0.00076
Низкий

7.3 High

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 7.3
nvd
6 месяцев назад

Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (establish-connection-no-undo modules) allows Absolute Path Traversal.This issue affects Tableau Server: before 2025.1.3, before 2024.2.12, before 2023.3.19.

EPSS

Процентиль: 23%
0.00076
Низкий

7.3 High

CVSS3

Дефекты

CWE-434