Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xh7h-h275-6q2f

Опубликовано: 22 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Directory traversal vulnerability in Sync In server thru 1.1.1 allowing authenticated attackers to gain read and write access to the system via FilesManager.saveMultipart function in backend/src/applications/files/services/files-manager.service.ts, and FilesManager.compress function in backend/src/applications/files/services/files-manager.service.ts.

Directory traversal vulnerability in Sync In server thru 1.1.1 allowing authenticated attackers to gain read and write access to the system via FilesManager.saveMultipart function in backend/src/applications/files/services/files-manager.service.ts, and FilesManager.compress function in backend/src/applications/files/services/files-manager.service.ts.

EPSS

Процентиль: 37%
0.00158
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 5.3
nvd
5 месяцев назад

Directory traversal vulnerability in Sync In server thru 1.1.1 allowing authenticated attackers to gain read and write access to the system via FilesManager.saveMultipart function in backend/src/applications/files/services/files-manager.service.ts, and FilesManager.compress function in backend/src/applications/files/services/files-manager.service.ts.

EPSS

Процентиль: 37%
0.00158
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-22