Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jqfh-7gh7-3q4c

Опубликовано: 05 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6.9
CVSS3: 4.9

Описание

Path traversal may lead to arbitrary file download. The score without least privilege principle violation is as calculated below. In combination with other issues it may facilitate further compromise of the device. Remediation in Version 6.8.0, release date: 01-Mar-25.

Path traversal may lead to arbitrary file download. The score without least privilege principle violation is as calculated below. In combination with other issues it may facilitate further compromise of the device. Remediation in Version 6.8.0, release date: 01-Mar-25.

EPSS

Процентиль: 45%
0.00229
Низкий

6.9 Medium

CVSS4

4.9 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 4.9
nvd
11 месяцев назад

Path traversal may lead to arbitrary file download. The score without least privilege principle violation is as calculated below. In combination with other issues it may facilitate further compromise of the device. Remediation in Version 6.8.0, release date: 01-Mar-25.

EPSS

Процентиль: 45%
0.00229
Низкий

6.9 Medium

CVSS4

4.9 Medium

CVSS3

Дефекты

CWE-22