Security Advisory

CVE-2022-47526

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-05-30 00:00:00
Last updated 2025-01-14 16:55:56
Assigner mitre
State PUBLISHED

Description

Fox-IT DataDiode (aka Fox DataDiode) 3.4.3 suffers from a path traversal vulnerability with resultant arbitrary writing of files. A remote attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the downstream node user. Exploitation of this issue does not require user interaction.