Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wcgh-5m9c-wvw3

Опубликовано: 22 авг. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

An Arbitrary File Movement vulnerability was found in ASUSTOR Data Master (ADM) allows an attacker to exploit the file renaming feature to move files to unintended directories. Affected products and versions include: ADM 4.0.6.RIS1, 4.1.0 and below as well as ADM 4.2.2.RI61 and below.

An Arbitrary File Movement vulnerability was found in ASUSTOR Data Master (ADM) allows an attacker to exploit the file renaming feature to move files to unintended directories. Affected products and versions include: ADM 4.0.6.RIS1, 4.1.0 and below as well as ADM 4.2.2.RI61 and below.

EPSS

Процентиль: 22%
0.00074
Низкий

7.5 High

CVSS3

Дефекты

CWE-552

Связанные уязвимости

CVSS3: 7.5
nvd
больше 2 лет назад

An Arbitrary File Movement vulnerability was found in ASUSTOR Data Master (ADM) allows an attacker to exploit the file renaming feature to move files to unintended directories. Affected products and versions include: ADM 4.0.6.RIS1, 4.1.0 and below as well as ADM 4.2.2.RI61 and below.

CVSS3: 7.5
fstec
около 2 лет назад

Уязвимость функции переименования файлов операционной системы ASUSTOR Data Master (ADM), позволяющая нарушителю перемещать произвольные файлы

EPSS

Процентиль: 22%
0.00074
Низкий

7.5 High

CVSS3

Дефекты

CWE-552