Логотип exploitDog
bind:CVE-2022-28478
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-28478

Количество 2

Количество 2

nvd логотип

CVE-2022-28478

больше 3 лет назад

SeedDMS 6.0.17 and 5.1.24 are vulnerable to Directory Traversal. The "Remove file" functionality inside the "Log files management" menu does not sanitize user input allowing attackers with admin privileges to delete arbitrary files on the remote system.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-jrvj-5hh7-vf4w

больше 3 лет назад

SeedDMS 6.0.17 and 5.1.24 are vulnerable to Directory Traversal. The "Remove file" functionality inside the "Log files management" menu does not sanitize user input allowing attackers with admin privileges to delete arbitrary files on the remote system.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-28478

SeedDMS 6.0.17 and 5.1.24 are vulnerable to Directory Traversal. The "Remove file" functionality inside the "Log files management" menu does not sanitize user input allowing attackers with admin privileges to delete arbitrary files on the remote system.

CVSS3: 6.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-jrvj-5hh7-vf4w

SeedDMS 6.0.17 and 5.1.24 are vulnerable to Directory Traversal. The "Remove file" functionality inside the "Log files management" menu does not sanitize user input allowing attackers with admin privileges to delete arbitrary files on the remote system.

CVSS3: 6.5
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу