The CGE page with download function contains a Directory Traversal vulnerability. Attackers can use this loophole to download system files arbitrarily.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-9992 | The CGE page with download function contains a Directory Traversal vulnerability. Attackers can use this loophole to download system files arbitrarily. |
Fixes
Solution
Update CGE property management system to the latest version.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-09-16T22:08:22.477Z
Reserved: 2021-01-06T00:00:00
Link: CVE-2021-22857
No data.
Status : Modified
Published: 2021-02-17T11:15:15.710
Modified: 2024-11-21T05:50:46.633
Link: CVE-2021-22857
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD