Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p97h-4jgc-m3x7

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In Open Microscopy Environment OMERO.server 5.0.0 through 5.6.0, the reading of files from imported image filesets may circumvent OMERO permissions restrictions. This occurs because the Bio-Formats feature allows an image file to have embedded pathnames.

In Open Microscopy Environment OMERO.server 5.0.0 through 5.6.0, the reading of files from imported image filesets may circumvent OMERO permissions restrictions. This occurs because the Bio-Formats feature allows an image file to have embedded pathnames.

EPSS

Процентиль: 47%
0.00244
Низкий

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 7.5
nvd
больше 5 лет назад

In Open Microscopy Environment OMERO.server 5.0.0 through 5.6.0, the reading of files from imported image filesets may circumvent OMERO permissions restrictions. This occurs because the Bio-Formats feature allows an image file to have embedded pathnames.

EPSS

Процентиль: 47%
0.00244
Низкий

Дефекты

CWE-200