Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v6jm-v768-76h2

Опубликовано: 04 окт. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Relative path traversal vulnerability in Setelsa Security's ConacWin CB, in its 3.8.2.2 version and earlier, the exploitation of which could allow an attacker to perform an arbitrary download of files from the system via the "Download file" parameter.

Relative path traversal vulnerability in Setelsa Security's ConacWin CB, in its 3.8.2.2 version and earlier, the exploitation of which could allow an attacker to perform an arbitrary download of files from the system via the "Download file" parameter.

EPSS

Процентиль: 27%
0.00095
Низкий

7.5 High

CVSS3

Дефекты

CWE-22
CWE-23

Связанные уязвимости

CVSS3: 7.5
nvd
больше 2 лет назад

Relative path traversal vulnerability in Setelsa Security's ConacWin CB, in its 3.8.2.2 version and earlier, the exploitation of which could allow an attacker to perform an arbitrary download of files from the system via the "Download file" parameter.

EPSS

Процентиль: 27%
0.00095
Низкий

7.5 High

CVSS3

Дефекты

CWE-22
CWE-23