Security Advisory

CVE-2022-25773

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-02-26 11:48:33
Last updated 2025-03-12 19:51:58
Assigner Mautic
State PUBLISHED

Description

This advisory addresses a file placement vulnerability that could allow assets to be uploaded to unintended directories on the server. * Improper Limitation of a Pathname to a Restricted Directory: A vulnerability exists in the asset upload functionality that allows users to upload files to directories outside of the intended temporary directory.