Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-37866

Опубликовано: 07 нояб. 2022
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

When Apache Ivy downloads artifacts from a repository it stores them in the local file system based on a user-supplied "pattern" that may include placeholders for artifacts coordinates like the organisation, module or version. If said coordinates contain "../" sequences - which are valid characters for Ivy coordinates in general - it is possible the artifacts are stored outside of Ivy's local cache or repository or can overwrite different artifacts inside of the local cache. In order to exploit this vulnerability an attacker needs collaboration by the remote repository as Ivy will issue http requests containing ".." sequences and a "normal" repository will not interpret them as part of the artifact coordinates. Users of Apache Ivy 2.0.0 to 2.5.1 should upgrade to Ivy 2.5.1.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:apache:ivy:*:*:*:*:*:*:*:*
Версия от 2.0.0 (включая) до 2.5.1 (исключая)

EPSS

Процентиль: 67%
0.00544
Низкий

7.5 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.5
redhat
больше 2 лет назад

When Apache Ivy downloads artifacts from a repository it stores them in the local file system based on a user-supplied "pattern" that may include placeholders for artifacts coordinates like the organisation, module or version. If said coordinates contain "../" sequences - which are valid characters for Ivy coordinates in general - it is possible the artifacts are stored outside of Ivy's local cache or repository or can overwrite different artifacts inside of the local cache. In order to exploit this vulnerability an attacker needs collaboration by the remote repository as Ivy will issue http requests containing ".." sequences and a "normal" repository will not interpret them as part of the artifact coordinates. Users of Apache Ivy 2.0.0 to 2.5.1 should upgrade to Ivy 2.5.1.

CVSS3: 7.5
github
больше 2 лет назад

Apache Ivy vulnerable to path traversal

CVSS3: 7.5
fstec
больше 1 года назад

Уявимость пакетного менеджера Apache Ivy, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю получить несанкционированный доступ к файловой системе

CVSS3: 9.1
redos
7 месяцев назад

Множественные уязвимости apache-ivy

EPSS

Процентиль: 67%
0.00544
Низкий

7.5 High

CVSS3

Дефекты

CWE-22