Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r65m-7vr4-qqqv

Опубликовано: 13 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6.9
CVSS3: 6.5

Описание

External control of file name or path issue exists in RICOH Streamline NX V3 PC Client versions 3.5.0 to 3.242.0. If an attacker sends a specially crafted request, arbitrary files in the file system can be overwritten with log data.

External control of file name or path issue exists in RICOH Streamline NX V3 PC Client versions 3.5.0 to 3.242.0. If an attacker sends a specially crafted request, arbitrary files in the file system can be overwritten with log data.

EPSS

Процентиль: 33%
0.00391
Низкий

6.9 Medium

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-73

Связанные уязвимости

CVSS3: 6.5
nvd
около 1 года назад

External control of file name or path issue exists in RICOH Streamline NX V3 PC Client versions 3.5.0 to 3.242.0. If an attacker sends a specially crafted request, arbitrary files in the file system can be overwritten with log data.

CVSS3: 6.5
fstec
около 1 года назад

Уязвимость клиента SLNX PC Client комплекса встраиваемых приложений и инструментов для управления документооборотом RICOH Streamline NX, позволяющая нарушителю перезаписывать произвольные файлы

EPSS

Процентиль: 33%
0.00391
Низкий

6.9 Medium

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-73