PT-2022-13607 · Showdoc · Showdoc

Published

2022-03-22

·

Updated

2022-03-28

·

CVE-2022-1034

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ShowDoc versions 2.10.3 and earlier
Description The issue is related to an Unrestricted Upload of File vulnerability. This vulnerability allows for the upload of files without proper restrictions, potentially leading to security issues.
Recommendations For ShowDoc versions 2.10.3 and earlier, update to version 2.10.4 or later to resolve the issue. As a temporary workaround, consider restricting file upload capabilities until a patch is available.

Exploit

Fix

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-1034
GHSA-XP82-JMW8-MJXP

Affected Products

Showdoc