Описание
A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). The affected application performs file deletion without properly validating the file path or target. An attacker could delete files or sockets that the affected process has permission to remove, potentially resulting in denial of service or service disruption.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
EPSS
6.7 Medium
CVSS3
7.1 High
CVSS3
Дефекты
Связанные уязвимости
A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). The affected application performs file deletion without properly validating the file path or target. An attacker could delete files or sockets that the affected process has permission to remove, potentially resulting in denial of service or service disruption.
Уязвимость комплекта для разработки программного обеспечения SICAM SIAPP SDK, связанная с некорректным внешним управлением именем или путем файла, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
6.7 Medium
CVSS3
7.1 High
CVSS3