CVE-2022-1554

CVSS v3 Score
6.8
Medium
CVSS v2 Score
5.0
Medium

Vulnerability Description

Path Traversal due to `send_file` call in GitHub repository clinical-genomics/scout prior to 4.52.

CVSS:7.1(High)

An Absolute Path Traversal issue was discovered in Advantech WebAccess Version 8.1 and prior. The absolute path traversal vulnerability has been identified, which may allow an attacker to traverse the...

CWE-362017
CVSS:6.5(Medium)

Multiple vulnerabilities in the web-based management interface of Cisco Intersight Virtual Appliance could allow an authenticated, remote attacker to conduct a path traversal or command injection atta...

CWE-362021
CVSS:6.5(Medium)

Wyse Management Suite versions 3.2 and earlier contain an absolute path traversal vulnerability. A remote authenticated malicious user could exploit this vulnerability in order to read arbitrary files...

CWE-362021
CVSS:6.5(Medium)

Local File Inclusion vulnerability of the omni-directional communication system allows remote authenticated attacker inject absolute path into Url parameter and access arbitrary file.

CWE-362021
CVSS:6.5(Medium)

Absolute Path Traversal vulnerability in GetImage in QSAN Storage Manager allows remote authenticated attackers download arbitrary files via the Url path parameter. The referred vulnerability has been...

CWE-362021
CVSS:6.5(Medium)

Absolute Path Traversal vulnerability in FileDownload in QSAN Storage Manager allows remote authenticated attackers download arbitrary files via the Url path parameter. The referred vulnerability has ...

CWE-362021