PT-2022-27256 · Unknown · Watchtowerhq

Dave Jong

·

Published

2022-11-18

·

Updated

2022-11-21

·

CVE-2022-44583

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions WatchTowerHQ plugin versions prior to 3.6.16
Description The issue is related to an Unauth. Arbitrary File Download vulnerability. This means that unauthorized users may be able to download arbitrary files, potentially leading to sensitive information disclosure.
Recommendations For WatchTowerHQ plugin versions prior to 3.6.16, update to version 3.6.16 or later to resolve the issue.

Fix

Files Accessible to External Parties

Weakness Enumeration

Related Identifiers

CVE-2022-44583

Affected Products

Watchtowerhq