ZeroHour

CVE-2022-25936

PoC ×2
CVSS 3.1
7.5 high
EPSS
1%p70
Published
()
Modified
Description

Versions of the package servst before 2.0.3 are vulnerable to Directory Traversal due to improper sanitization of the filePath variable.

Vendors
servst project
Products
servst
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.