Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9q4r-rvww-q2rv

Опубликовано: 29 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in cgi component in Synology DNS Server before 2.2.2-5027 allows remote authenticated users to delete arbitrary files via unspecified vectors.

Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in cgi component in Synology DNS Server before 2.2.2-5027 allows remote authenticated users to delete arbitrary files via unspecified vectors.

EPSS

Процентиль: 72%
0.00702
Низкий

8.1 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.7
nvd
больше 3 лет назад

Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in cgi component in Synology DNS Server before 2.2.2-5027 allows remote authenticated users to delete arbitrary files via unspecified vectors.

EPSS

Процентиль: 72%
0.00702
Низкий

8.1 High

CVSS3

Дефекты

CWE-22