Description
RAVA certification validation system has a path traversal vulnerability. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication and access arbitrary system files.
No analysis available yet.
Remediation
Vendor Solution
Contact tech support from Changing Information Technology Inc.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-41604 | RAVA certification validation system has a path traversal vulnerability. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication and access arbitrary system files. |
References
| Link | Providers |
|---|---|
| https://www.twcert.org.tw/tw/cp-132-6619-9b5a7-1.html |
|
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 09 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-05-09T15:12:55.918Z
Reserved: 2022-08-31T00:00:00.000Z
Link: CVE-2022-39058
Updated: 2024-08-03T11:10:32.456Z
Status : Modified
Published: 2022-10-18T06:15:09.340
Modified: 2024-11-21T07:17:28.353
Link: CVE-2022-39058
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD