ZeroHour

CVE-2022-27192

CVSS 3.1
7.5 high
EPSS
1%p65
Published
()
Modified
Description

The Reporting module in Aseco Lietuva document management system DVS Avilys before 3.5.58 allows unauthorized file download. An unauthenticated attacker can impersonate an administrator by reading administrative files.

Vendors
asseco
Products
dvs avilys
Weakness
CWE-532
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.