Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x536-9g45-6jcr

Опубликовано: 03 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.1

Описание

Directory Traversal (Local File Inclusion) vulnerability in Tikit (now Advanced) eMarketing platform 6.8.3.0 allows a remote attacker to read arbitrary files and obtain sensitive information via a crafted payload to the filename parameter to the OpenLogFile endpoint.

Directory Traversal (Local File Inclusion) vulnerability in Tikit (now Advanced) eMarketing platform 6.8.3.0 allows a remote attacker to read arbitrary files and obtain sensitive information via a crafted payload to the filename parameter to the OpenLogFile endpoint.

EPSS

Процентиль: 0%
0.00006
Низкий

5.1 Medium

CVSS3

Дефекты

CWE-98

Связанные уязвимости

CVSS3: 5.1
nvd
11 месяцев назад

Directory Traversal (Local File Inclusion) vulnerability in Tikit (now Advanced) eMarketing platform 6.8.3.0 allows a remote attacker to read arbitrary files and obtain sensitive information via a crafted payload to the filename parameter to the OpenLogFile endpoint.

EPSS

Процентиль: 0%
0.00006
Низкий

5.1 Medium

CVSS3

Дефекты

CWE-98