PT-2022-27079 · Unknown · Simmeth Lieferantenmanager
Steffen Robertz
·
Published
2022-12-25
·
Updated
2022-12-30
·
CVE-2022-44016
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Simmeth Lieferantenmanager versions prior to 5.6
Description
An issue was discovered that allows an attacker to download arbitrary files from the web server by abusing an API call to "/DS/LM API/api/ConfigurationService/GetImages" with an
ImagesPath value set to "C:". This enables the attacker to access files on the server.Recommendations
For versions prior to 5.6, as a temporary workaround, consider restricting access to the "/DS/LM API/api/ConfigurationService/GetImages" API endpoint until a patch is available. Avoid using the
ImagesPath variable in this endpoint to minimize the risk of exploitation. Update to version 5.6 or later to resolve the issue.Exploit
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Simmeth Lieferantenmanager