Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qw5j-33ph-5px7

Опубликовано: 05 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker with administrative privileges to write files on the filesystem and potentially achieve arbitrary remote code execution. This vulnerability cannot be exploited by users with lower privilege roles.

In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker with administrative privileges to write files on the filesystem and potentially achieve arbitrary remote code execution. This vulnerability cannot be exploited by users with lower privilege roles.

EPSS

Процентиль: 89%
0.04641
Низкий

7.2 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.2
nvd
больше 1 года назад

In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker with administrative privileges to write files on the filesystem and potentially achieve arbitrary remote code execution. This vulnerability cannot be exploited by users with lower privilege roles.

CVSS3: 7.2
fstec
больше 1 года назад

Уязвимость средства управления доступом 2N Access Commander, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 89%
0.04641
Низкий

7.2 High

CVSS3

Дефекты

CWE-22