Описание
Dropouts Technologies LLP Super Backup v2.0.5 was discovered to contain an issue in the path parameter of the list and download module which allows attackers to perform a directory traversal via a change to the path variable to request the local list command.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:dropouts:super_backup:2.0.5:*:*:*:*:ipados:*:*
cpe:2.3:a:dropouts:super_backup:2.0.5:*:*:*:*:iphone_os:*:*
EPSS
Процентиль: 62%
0.00431
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-22
Связанные уязвимости
github
больше 3 лет назад
Dropouts Technologies LLP Super Backup v2.0.5 was discovered to contain an issue in the path parameter of the `list` and `download` module which allows attackers to perform a directory traversal via a change to the path variable to request the local list command.
EPSS
Процентиль: 62%
0.00431
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-22