Логотип exploitDog
bind:CVE-2022-1359
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-1359

Количество 2

Количество 2

nvd логотип

CVE-2022-1359

больше 3 лет назад

The affected On-Premise cnMaestro is vulnerable to an arbitrary file-write through improper limitation of a pathname to a restricted directory inside a specific route. If an attacker supplied path traversal charters (../) as part of a filename, the server will save the file where the attacker chooses. This could allow an attacker to write any data to any file in the server.

CVSS3: 5.7
EPSS: Низкий
github логотип

GHSA-qpf9-w85c-45gv

больше 3 лет назад

The affected On-Premise cnMaestro is vulnerable to an arbitrary file-write through improper limitation of a pathname to a restricted directory inside a specific route. If an attacker supplied path traversal charters (../) as part of a filename, the server will save the file where the attacker chooses. This could allow an attacker to write any data to any file in the server.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-1359

The affected On-Premise cnMaestro is vulnerable to an arbitrary file-write through improper limitation of a pathname to a restricted directory inside a specific route. If an attacker supplied path traversal charters (../) as part of a filename, the server will save the file where the attacker chooses. This could allow an attacker to write any data to any file in the server.

CVSS3: 5.7
0%
Низкий
больше 3 лет назад
github логотип
GHSA-qpf9-w85c-45gv

The affected On-Premise cnMaestro is vulnerable to an arbitrary file-write through improper limitation of a pathname to a restricted directory inside a specific route. If an attacker supplied path traversal charters (../) as part of a filename, the server will save the file where the attacker chooses. This could allow an attacker to write any data to any file in the server.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу