SYNEL - eharmony Directory Traversal. Directory Traversal - is an attack against a server or a Web application aimed at unauthorized access to the file system. on the "Name" parameter the attacker can return to the root directory and open the host file. The path exposes sensitive files that users upload
Advisories
Source ID Title
EUVD EUVD EUVD-2022-27933 SYNEL - eharmony Directory Traversal. Directory Traversal - is an attack against a server or a Web application aimed at unauthorized access to the file system. on the "Name" parameter the attacker can return to the root directory and open the host file. The path exposes sensitive files that users upload
Fixes

Solution

A patch was released, Update to eharmony version 11


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: INCD

Published:

Updated: 2024-08-03T03:21:49.118Z

Reserved: 2022-01-07T00:00:00

Link: CVE-2022-22790

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-01-28T20:15:12.557

Modified: 2024-11-21T06:47:27.463

Link: CVE-2022-22790

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.