We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2022-3389

Path Traversal in ikus060/rdiffweb



Description

Path Traversal in GitHub repository ikus060/rdiffweb prior to 2.4.10.

Reserved 2022-10-02 | Published 2022-10-06 | Updated 2024-08-03 | Assigner @huntrdev


HIGH: 8.2CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N

Problem types

CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Product status

Any version before 2.4.10
affected

References

huntr.dev/bounties/f7d2a6ab-2faf-4719-bdb6-e4e5d6065752

github.com/...ommit/323383d1db656f1b1291be529947bd943a6b0e99

cve.org (CVE-2022-3389)

nvd.nist.gov (CVE-2022-3389)

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2022-3389

Support options

Helpdesk Chat, Email, Knowledgebase
Telegram Chat
Subscribe to our newsletter to learn more about our work.