Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-77vp-2488-vmf6

Опубликовано: 20 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.3
CVSS3: 6.5

Описание

External Control of File Name or Path vulnerability in opentext Flipper allows Path Traversal. The vulnerability could allow a user to submit a stored local file path and then download the specified file from the system by requesting the stored document ID.

This issue affects Flipper: 3.1.2.

External Control of File Name or Path vulnerability in opentext Flipper allows Path Traversal. The vulnerability could allow a user to submit a stored local file path and then download the specified file from the system by requesting the stored document ID.

This issue affects Flipper: 3.1.2.

EPSS

Процентиль: 15%
0.00048
Низкий

5.3 Medium

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-73

Связанные уязвимости

CVSS3: 6.5
nvd
4 месяца назад

External Control of File Name or Path vulnerability in opentext Flipper allows Path Traversal. The vulnerability could allow a user to submit a stored local file path and then download the specified file from the system by requesting the stored document ID. This issue affects Flipper: 3.1.2.

EPSS

Процентиль: 15%
0.00048
Низкий

5.3 Medium

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-73