CVE-2022-24633

Publication date

2022-02-22 12:33:30

Family

mitre

State

PUBLISHED

Description

All versions of FileCloud prior to 21.3 are vulnerable to user enumeration. The vulnerability exists in the parameter "path" passing "/SHARED/". A malicious actor could identify the existence of users by requesting share information on specified share paths.