Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-33897

Опубликовано: 25 окт. 2022
Источник: nvd
CVSS3: 4.9
CVSS3: 9.1
EPSS Низкий

Описание

A directory traversal vulnerability exists in the web_server /ajax/remove/ functionality of Robustel R1510 3.1.16. A specially-crafted network request can lead to arbitrary file deletion. An attacker can send a sequence of requests to trigger this vulnerability.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:robustel:r1510_firmware:3.1.16:*:*:*:*:*:*:*
cpe:2.3:h:robustel:r1510:-:*:*:*:*:*:*:*

EPSS

Процентиль: 77%
0.01005
Низкий

4.9 Medium

CVSS3

9.1 Critical

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 9.1
github
больше 3 лет назад

A directory traversal vulnerability exists in the web_server /ajax/remove/ functionality of Robustel R1510 3.1.16. A specially-crafted network request can lead to arbitrary file deletion. An attacker can send a sequence of requests to trigger this vulnerability.

EPSS

Процентиль: 77%
0.01005
Низкий

4.9 Medium

CVSS3

9.1 Critical

CVSS3

Дефекты

CWE-22