Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hr5w-2jcm-x89v

Опубликовано: 29 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.7
CVSS3: 7.5

Описание

The QbiCRMGateway developed by Ai3 has an Arbitrary File Reading vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.

The QbiCRMGateway developed by Ai3 has an Arbitrary File Reading vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.

EPSS

Процентиль: 27%
0.00099
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-23

Связанные уязвимости

CVSS3: 7.5
nvd
5 месяцев назад

The QbiCRMGateway developed by Ai3 has an Arbitrary File Reading vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.

EPSS

Процентиль: 27%
0.00099
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-23