Description
A file write vulnerability exists in the httpd upload.cgi functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted HTTP request can lead to arbitrary file upload. An attacker can send an HTTP request to trigger this vulnerability.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-41591 | A file write vulnerability exists in the httpd upload.cgi functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted HTTP request can lead to arbitrary file upload. An attacker can send an HTTP request to trigger this vulnerability. |
References
History
No history.
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2024-08-03T11:10:32.326Z
Reserved: 2022-09-19T18:02:00.205Z
Link: CVE-2022-39045
Updated: 2024-08-03T11:10:32.326Z
Status : Modified
Published: 2023-01-26T22:15:14.990
Modified: 2024-11-21T07:17:26.543
Link: CVE-2022-39045
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD