Описание
Insufficient path validation when writing a file via WebDAV in South River Technologies' Titan MFT and Titan SFTP servers on Linux allows an authenticated attacker to write a file to any location on the filesystem via path traversal
Ссылки
- Vendor Advisory
- ExploitThird Party Advisory
- Vendor Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.0.18 (исключая)
cpe:2.3:a:southrivertech:titan_mfp_server:*:*:*:*:*:linux:*:*
EPSS
Процентиль: 64%
0.0046
Низкий
7.2 High
CVSS3
Дефекты
CWE-22
CWE-22
Связанные уязвимости
CVSS3: 7.2
github
больше 2 лет назад
Insufficient path validation when writing a file via WebDAV in South River Technologies' Titan MFT and Titan SFTP servers on Linux allows an authenticated attacker to write a file to any location on the filesystem via path traversal
EPSS
Процентиль: 64%
0.0046
Низкий
7.2 High
CVSS3
Дефекты
CWE-22
CWE-22