← volver
CVE-2022-4778mediumCWE-22

path traversal in elvexys StreamX using StreamView HTML component with public web server feature

13Vexday Risk Score

Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.

ssvc Trackcvss 6.5epss 0.7%
probabilidad de explotación
0.7%top 51% de las CVE
explotación observada
noninguna fuente lo reporta
StreamX applications from versions 6.02.01 to 6.04.34 are affected by a path traversal vulnerability that allows authenticated users to get unauthorized access to files on the server's filesystem. StreamX applications using StreamView HTML component with the public web server feature activated are affected.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Productos afectados
elvexys · StreamX