Beveiligingsadvies

CVE-2022-26675

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-04-07 18:22:42
Laatst bijgewerkt 2024-09-17 01:56:47
Toegewezen door twcert
CVSS-score 7.5
Status PUBLISHED

Beschrijving

aEnrich a+HRD has inadequate filtering for special characters in URLs. An unauthenticated remote attacker can bypass authentication and perform path traversal attacks to access arbitrary files under website root directory.