A CWE-22: Improper Limitation of a Pathname to a...
Moderate severity
Unreviewed
Published
Nov 15, 2023
to the GitHub Advisory Database
•
Updated Nov 15, 2023
Description
Published by the National Vulnerability Database
Nov 15, 2023
Published to the GitHub Advisory Database
Nov 15, 2023
Last updated
Nov 15, 2023
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
vulnerability exists that could cause a file system enumeration and file download when an
attacker navigates to the Network Management Card via HTTPS.
References