Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-76vr-x382-ppf5

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Directory traversal vulnerability in Cogent DataHub before 7.3.5 allows remote attackers to read arbitrary files of unspecified types, or cause a web-server denial of service, via a crafted pathname.

Directory traversal vulnerability in Cogent DataHub before 7.3.5 allows remote attackers to read arbitrary files of unspecified types, or cause a web-server denial of service, via a crafted pathname.

EPSS

Процентиль: 61%
0.00406
Низкий

Дефекты

CWE-22

Связанные уязвимости

nvd
больше 11 лет назад

The directory specifier can include designators that can be used to traverse the directory path. Exploiting this vulnerability may enable an attacker to access a limited number of hardcoded file types. Further exploitation of this vulnerability may allow an attacker to cause the web server component to enter a denial-of-service condition.

EPSS

Процентиль: 61%
0.00406
Низкий

Дефекты

CWE-22