PT-2023-13511 · Deytek Informatics · Fileorbis File Management System
Tevfik Demirel
·
Publicado
2023-01-13
·
Atualizado
2023-04-16
·
CVE-2022-3693
CVSS v3.1
7.5
Alta
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Deytek Informatics FileOrbis File Management System versions prior to 10.6.3
Description
The issue is related to a Path Traversal vulnerability in the FileOrbis File Management System. This vulnerability allows for unauthenticated local file inclusion and path traversal. The estimated number of potentially affected devices and details about real-world incidents where this issue was exploited are not provided.
Recommendations
For versions prior to 10.6.3, update to version 10.6.3 to resolve the issue. As a temporary workaround, consider restricting access to sensitive files and directories to minimize the risk of exploitation.
Correção
Path traversal
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Fileorbis File Management System