Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hj73-xx75-phmm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

ECOA BAS controller suffers from a path traversal vulnerability, causing arbitrary files deletion. Using the specific GET parameter, unauthenticated attackers can remotely delete arbitrary files on the affected device and cause denial of service scenario.

ECOA BAS controller suffers from a path traversal vulnerability, causing arbitrary files deletion. Using the specific GET parameter, unauthenticated attackers can remotely delete arbitrary files on the affected device and cause denial of service scenario.

EPSS

Процентиль: 88%
0.03889
Низкий

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 9.1
nvd
больше 4 лет назад

ECOA BAS controller suffers from a path traversal vulnerability, causing arbitrary files deletion. Using the specific GET parameter, unauthenticated attackers can remotely delete arbitrary files on the affected device and cause denial of service scenario.

EPSS

Процентиль: 88%
0.03889
Низкий

Дефекты

CWE-22