Description
Sysaid – Sysaid Local File Inclusion (LFI) – An unauthenticated attacker can access to the system by accessing to "/lib/tinymce/examples/index.html" path. in the "Insert/Edit Embedded Media" window Choose Type : iFrame and File/URL : [here is the LFI] Solution: Update to 22.2.20 cloud version, or to 22.1.64 on premise version.
No analysis available yet.
Remediation
Vendor Solution
Update to 22.2.20 cloud version, or to 22.1.64 on premise version.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-28257 | Sysaid – Sysaid Local File Inclusion (LFI) – An unauthenticated attacker can access to the system by accessing to "/lib/tinymce/examples/index.html" path. in the "Insert/Edit Embedded Media" window Choose Type : iFrame and File/URL : [here is the LFI] Solution: Update to 22.2.20 cloud version, or to 22.1.64 on premise version. |
References
| Link | Providers |
|---|---|
| https://www.gov.il/en/departments/faq/cve_advisories |
|
History
No history.
Status: PUBLISHED
Assigner: INCD
Published:
Updated: 2024-09-16T22:24:47.336Z
Reserved: 2022-01-11T00:00:00.000Z
Link: CVE-2022-23166
No data.
Status : Modified
Published: 2022-05-12T20:15:15.320
Modified: 2024-11-21T06:48:06.947
Link: CVE-2022-23166
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD