Directory travesal in /northstar/filemanager/download.jsp in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote unauthenticated users to download arbitrary files, including JSP source code, across the filesystem of the host of the web application.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-02-04T18:48:57
Updated: 2024-08-03T22:02:51.934Z
Reserved: 2021-03-29T00:00:00
Link: CVE-2021-29395
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-02-04T19:15:07.883
Modified: 2024-11-21T06:01:02.170
Link: CVE-2021-29395
Redhat
No data.