Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-6900

Опубликовано: 17 дек. 2023
Источник: nvd
CVSS3: 4.6
CVSS3: 9.1
CVSS2: 4.1
EPSS Низкий

Описание

A vulnerability, which was classified as critical, has been found in rmountjoy92 DashMachine 0.5-4. Affected by this issue is some unknown functionality of the file /settings/delete_file. The manipulation of the argument file leads to path traversal: '../filedir'. The exploit has been disclosed to the public and may be used. VDB-248258 is the identifier assigned to this vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:rmountjoy92:dashmachine:0.5-4:*:*:*:*:*:*:*

EPSS

Процентиль: 19%
0.00059
Низкий

4.6 Medium

CVSS3

9.1 Critical

CVSS3

4.1 Medium

CVSS2

Дефекты

CWE-24
CWE-22

Связанные уязвимости

CVSS3: 4.6
github
около 2 лет назад

A vulnerability, which was classified as critical, has been found in rmountjoy92 DashMachine 0.5-4. Affected by this issue is some unknown functionality of the file /settings/delete_file. The manipulation of the argument file leads to path traversal: '../filedir'. The exploit has been disclosed to the public and may be used. VDB-248258 is the identifier assigned to this vulnerability.

EPSS

Процентиль: 19%
0.00059
Низкий

4.6 Medium

CVSS3

9.1 Critical

CVSS3

4.1 Medium

CVSS2

Дефекты

CWE-24
CWE-22