Описание
File Thingie 2.5.7 is vulnerable to Directory Traversal. A malicious user can leverage the "create folder from url" functionality of the application to read arbitrary files on the target system.
Ссылки
- Third Party Advisory
- Product
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:leefish:file_thingie:2.5.7:*:*:*:*:*:*:*
EPSS
Процентиль: 21%
0.00067
Низкий
4.3 Medium
CVSS3
Дефекты
CWE-22
Связанные уязвимости
CVSS3: 4.3
github
18 дней назад
File Thingie 2.5.7 is vulnerable to Directory Traversal. A malicious user can leverage the "create folder from url" functionality of the application to read arbitrary files on the target system.
EPSS
Процентиль: 21%
0.00067
Низкий
4.3 Medium
CVSS3
Дефекты
CWE-22