Description
An issue in the ?filename= argument of the route /DataPackageTable in FreeTAKServer-UI v1.9.8 allows attackers to place arbitrary files anywhere on the system.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-1358 | An issue in the ?filename= argument of the route /DataPackageTable in FreeTAKServer-UI v1.9.8 allows attackers to place arbitrary files anywhere on the system. |
Github GHSA |
GHSA-7cr9-rmqr-fpqp | Path traversal in FreeTAKServer-UI |
References
| Link | Providers |
|---|---|
| https://github.com/FreeTAKTeam/UI/issues/29 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T04:42:49.571Z
Reserved: 2022-02-21T00:00:00.000Z
Link: CVE-2022-25511
No data.
Status : Modified
Published: 2022-03-11T00:15:08.450
Modified: 2024-11-21T06:52:18.600
Link: CVE-2022-25511
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA