PT-2022-19051 · Seeddms · Seeddms
Uwe Steinmann
·
Published
2022-06-06
·
Updated
2022-06-14
·
CVE-2022-28478
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
SeedDMS versions 5.1.24 and 6.0.17
Description
The issue arises from the "Remove file" functionality inside the "Log files management" menu, which does not properly sanitize user input. This allows attackers with admin privileges to delete arbitrary files on the remote system. The problem is related to a Directory Traversal issue.
Recommendations
For SeedDMS version 5.1.24, update to a version that fixes the Directory Traversal issue in the "Remove file" functionality.
For SeedDMS version 6.0.17, update to a version that fixes the Directory Traversal issue in the "Remove file" functionality.
As a temporary workaround, consider restricting access to the "Log files management" menu to minimize the risk of exploitation.
Exploit
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Seeddms