Логотип exploitDog
bind:CVE-2022-46178
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-46178

Количество 2

Количество 2

nvd логотип

CVE-2022-46178

около 3 лет назад

MeterSphere is a one-stop open source continuous testing platform, covering test management, interface testing, UI testing and performance testing. Versions prior to 2.5.1 allow users to upload a file, but do not validate the file name, which may lead to upload file to any path. The vulnerability has been fixed in v2.5.1. There are no workarounds.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-9p62-x3c5-hr5p

около 3 лет назад

Path Traversal In MeterSpere leads to upload file to any path

CVSS3: 7.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-46178

MeterSphere is a one-stop open source continuous testing platform, covering test management, interface testing, UI testing and performance testing. Versions prior to 2.5.1 allow users to upload a file, but do not validate the file name, which may lead to upload file to any path. The vulnerability has been fixed in v2.5.1. There are no workarounds.

CVSS3: 7.4
1%
Низкий
около 3 лет назад
github логотип
GHSA-9p62-x3c5-hr5p

Path Traversal In MeterSpere leads to upload file to any path

CVSS3: 7.4
1%
Низкий
около 3 лет назад

Уязвимостей на страницу