PT-2022-28084 · Cloudsync · Cloudsync

Jonathan Leitschuh

·

Published

2022-12-27

·

Updated

2024-08-03

·

CVE-2022-4773

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions cloudsync (affected versions not specified)
Description A problematic vulnerability was found in cloudsync, affecting the getItem function of the LocalFilesystemConnector.java file. This vulnerability leads to path traversal and can be exploited on the local host.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2022-4773

Affected Products

Cloudsync