Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-47755

Опубликовано: 15 янв. 2026
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

Oliver Library Server v5 contains a file download vulnerability that allows unauthenticated attackers to access arbitrary system files through unsanitized input in the FileServlet endpoint. Attackers can exploit the vulnerability by manipulating the 'fileName' parameter to download sensitive files from the server's filesystem.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:softlinkint:oliver_v5_library:*:*:*:*:*:*:*:*
Версия до 8.00.008.053 (исключая)

EPSS

Процентиль: 30%
0.00111
Низкий

7.5 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 9.8
github
23 дня назад

Oliver Library Server v5 contains a file download vulnerability that allows unauthenticated attackers to access arbitrary system files through unsanitized input in the FileServlet endpoint. Attackers can exploit the vulnerability by manipulating the 'fileName' parameter to download sensitive files from the server's filesystem.

EPSS

Процентиль: 30%
0.00111
Низкий

7.5 High

CVSS3

Дефекты

CWE-22