Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xcr9-xmx6-j7fh

Опубликовано: 11 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A path traversal issue was discovered on GL.iNet devices before 3.216. Through the file sharing feature, it is possible to share an arbitrary directory, such as /tmp or /etc, because there is no server-side restriction to limit sharing to the USB path.

A path traversal issue was discovered on GL.iNet devices before 3.216. Through the file sharing feature, it is possible to share an arbitrary directory, such as /tmp or /etc, because there is no server-side restriction to limit sharing to the USB path.

EPSS

Процентиль: 54%
0.0031
Низкий

7.5 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.5
nvd
больше 2 лет назад

A path traversal issue was discovered on GL.iNet devices before 3.216. Through the file sharing feature, it is possible to share an arbitrary directory, such as /tmp or /etc, because there is no server-side restriction to limit sharing to the USB path.

EPSS

Процентиль: 54%
0.0031
Низкий

7.5 High

CVSS3

Дефекты

CWE-22