Beveiligingsadvies

CVE-2020-7882

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-11-22 14:43:26
Laatst bijgewerkt 2024-08-04 09:48:23
Toegewezen door krcert
CVSS-score 7.5
Status PUBLISHED

Beschrijving

Using the parameter of getPFXFolderList function, attackers can see the information of authorization certification and delete the files. It occurs because the parameter contains path traversal characters(ie. '../../../')