Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m62x-9qq8-9g5h

Опубликовано: 01 фев. 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in FAUST iServer before 9.0.019.019.7. For each URL request, it accesses the corresponding .fau file on the operating system without preventing %2e%2e%5c directory traversal.

An issue was discovered in FAUST iServer before 9.0.019.019.7. For each URL request, it accesses the corresponding .fau file on the operating system without preventing %2e%2e%5c directory traversal.

EPSS

Процентиль: 100%
0.90222
Критический

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.5
nvd
около 4 лет назад

An issue was discovered in FAUST iServer before 9.0.019.019.7. For each URL request, it accesses the corresponding .fau file on the operating system without preventing %2e%2e%5c directory traversal.

EPSS

Процентиль: 100%
0.90222
Критический

Дефекты

CWE-22