Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qf3r-5747-pc5r

Опубликовано: 22 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 7.1
CVSS3: 6.5

Описание

WebITR developed by Uniong has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files.

WebITR developed by Uniong has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files.

EPSS

Процентиль: 19%
0.0006
Низкий

7.1 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-36

Связанные уязвимости

CVSS3: 6.5
nvd
6 месяцев назад

WebITR developed by Uniong has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files.

EPSS

Процентиль: 19%
0.0006
Низкий

7.1 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-36