Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x7q5-pcwp-2h3f

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Directory traversal vulnerability in CHXO Feedsplitter 2006-01-21 allows remote attackers to read arbitrary XML files via .. (dot dot) sequences in the format parameter with a leading ".", which bypasses a security check.

Directory traversal vulnerability in CHXO Feedsplitter 2006-01-21 allows remote attackers to read arbitrary XML files via .. (dot dot) sequences in the format parameter with a leading ".", which bypasses a security check.

EPSS

Процентиль: 49%
0.00259
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

Directory traversal vulnerability in CHXO Feedsplitter 2006-01-21 allows remote attackers to read arbitrary XML files via .. (dot dot) sequences in the format parameter with a leading ".", which bypasses a security check.

EPSS

Процентиль: 49%
0.00259
Низкий