Количество 2
Количество 2
CVE-2023-52289
около 2 лет назад
An issue was discovered in the flaskcode package through 0.0.8 for Python. An unauthenticated directory traversal, exploitable with a POST request to a /update-resource-data/<file_path> URI (from views.py), allows attackers to write to arbitrary files.
CVSS3: 7.5
EPSS: Низкий
GHSA-v3rg-qm46-xrg9
около 2 лет назад
Path traversal in flaskcode
CVSS3: 7.5
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-52289 An issue was discovered in the flaskcode package through 0.0.8 for Python. An unauthenticated directory traversal, exploitable with a POST request to a /update-resource-data/<file_path> URI (from views.py), allows attackers to write to arbitrary files. | CVSS3: 7.5 | 0% Низкий | около 2 лет назад | |
GHSA-v3rg-qm46-xrg9 Path traversal in flaskcode | CVSS3: 7.5 | 0% Низкий | около 2 лет назад |
Уязвимостей на страницу
20