Логотип exploitDog
bind:CVE-2022-45802
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-45802

Количество 2

Количество 2

nvd логотип

CVE-2022-45802

почти 3 года назад

Streampark allows any users to upload a jar as application, but there is no mandatory verification of the uploaded file type, causing users to upload some high-risk files, and may upload them to any directory, Users of the affected versions should upgrade to Apache StreamPark 2.0.0 or later

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-6874-289g-f7h7

больше 2 лет назад

Apache StreamPark Path Traversal vulnerability

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-45802

Streampark allows any users to upload a jar as application, but there is no mandatory verification of the uploaded file type, causing users to upload some high-risk files, and may upload them to any directory, Users of the affected versions should upgrade to Apache StreamPark 2.0.0 or later

CVSS3: 9.8
0%
Низкий
почти 3 года назад
github логотип
GHSA-6874-289g-f7h7

Apache StreamPark Path Traversal vulnerability

CVSS3: 9.8
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу