Логотип exploitDog
bind:CVE-2022-41712
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-41712

Количество 2

Количество 2

nvd логотип

CVE-2022-41712

около 3 лет назад

Frappe version 14.10.0 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not correctly validate the information injected by the user in the import_file parameter.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-rfgc-5r25-fw46

около 3 лет назад

Frappe version 14.10.0 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not correctly validate the information injected by the user in the import_file parameter.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-41712

Frappe version 14.10.0 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not correctly validate the information injected by the user in the import_file parameter.

CVSS3: 6.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-rfgc-5r25-fw46

Frappe version 14.10.0 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not correctly validate the information injected by the user in the import_file parameter.

CVSS3: 6.5
0%
Низкий
около 3 лет назад

Уязвимостей на страницу