Description
Agentflow BPM file download function has a path traversal vulnerability. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication and download arbitrary system files.
No analysis available yet.
Remediation
Vendor Solution
Contact tech support from FLOWRING
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-41583 | Agentflow BPM file download function has a path traversal vulnerability. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication and download arbitrary system files. |
References
History
Thu, 01 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-05-01T14:00:05.111Z
Reserved: 2022-08-30T00:00:00.000Z
Link: CVE-2022-39037
Updated: 2024-08-03T11:10:32.438Z
Status : Modified
Published: 2022-11-10T15:15:14.550
Modified: 2024-11-21T07:17:25.460
Link: CVE-2022-39037
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD