Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7xx5-33hr-pq7g

Опубликовано: 15 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

A directory traversal vulnerability exists in the AssetActions.aspx addDoc functionality of Lansweeper lansweeper 10.1.1.0. A specially-crafted HTTP request can lead to arbitrary file upload. An attacker can send an HTTP request to trigger this vulnerability.

A directory traversal vulnerability exists in the AssetActions.aspx addDoc functionality of Lansweeper lansweeper 10.1.1.0. A specially-crafted HTTP request can lead to arbitrary file upload. An attacker can send an HTTP request to trigger this vulnerability.

EPSS

Процентиль: 96%
0.25435
Средний

8.8 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 9.9
nvd
около 3 лет назад

A directory traversal vulnerability exists in the AssetActions.aspx addDoc functionality of Lansweeper lansweeper 10.1.1.0. A specially-crafted HTTP request can lead to arbitrary file upload. An attacker can send an HTTP request to trigger this vulnerability.

EPSS

Процентиль: 96%
0.25435
Средний

8.8 High

CVSS3

Дефекты

CWE-22