PT-2018-4162 · Psensor · Psensor

Publicado

2018-04-20

·

Atualizado

2019-10-03

·

CVE-2014-10073

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Psensor versions prior to 1.1.4
Description The issue concerns a Directory Traversal problem due to a lack of checks in the create response function. This function is located in server/server.c and allows access to files outside the intended webserver directory.
Recommendations For versions prior to 1.1.4, update to version 1.1.4 or later to resolve the issue.

Correção

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2014-10073
DLA-1361-1

Produtos afetados

Psensor