ZeroHour

Vulnerabilities

1 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2022-42745
CandidATS version 3.0.0 allows an external attacker to read arbitrary files from the server.

CandidATS version 3.0.0 allows an external attacker to read arbitrary files from the server. This is possible because the application is vulnerable to XXE.

NVD description · AI analysis pending
7.5<1% PoC
  • auieosoftware candidats