Логотип exploitDog
bind:CVE-2022-25216
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-25216

Количество 2

Количество 2

nvd логотип

CVE-2022-25216

почти 4 года назад

An absolute path traversal vulnerability allows a remote attacker to download any file on the Windows file system for which the user account running DVDFab 12 Player (recently renamed PlayerFab) has read-access, by means of an HTTP GET request to http://<IP_ADDRESS>:32080/download/<URL_ENCODED_PATH>.

CVSS3: 7.5
EPSS: Высокий
github логотип

GHSA-fgpm-r6hm-6q6j

почти 4 года назад

An absolute path traversal vulnerability allows a remote attacker to download any file on the Windows file system for which the user account running DVDFab 12 Player (recently renamed PlayerFab) has read-access, by means of an HTTP GET request to http://<IP_ADDRESS>:32080/download/<URL_ENCODED_PATH>.

CVSS3: 7.5
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-25216

An absolute path traversal vulnerability allows a remote attacker to download any file on the Windows file system for which the user account running DVDFab 12 Player (recently renamed PlayerFab) has read-access, by means of an HTTP GET request to http://<IP_ADDRESS>:32080/download/<URL_ENCODED_PATH>.

CVSS3: 7.5
83%
Высокий
почти 4 года назад
github логотип
GHSA-fgpm-r6hm-6q6j

An absolute path traversal vulnerability allows a remote attacker to download any file on the Windows file system for which the user account running DVDFab 12 Player (recently renamed PlayerFab) has read-access, by means of an HTTP GET request to http://<IP_ADDRESS>:32080/download/<URL_ENCODED_PATH>.

CVSS3: 7.5
83%
Высокий
почти 4 года назад

Уязвимостей на страницу