A vulnerability classified as problematic was found in Chengdu Flash Flood Disaster Monitoring and Warning System 2.0. This vulnerability affects unknown code of the file \Service\FileDownload.ashx. The manipulation of the argument Files leads to path traversal: '../filedir'. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-236206 is the identifier assigned to this vulnerability.
Metrics
Affected Vendors & Products
References
History
Thu, 21 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: VulDB
Published: 2023-08-05T21:00:06.077Z
Updated: 2024-11-21T15:11:21.977Z
Reserved: 2023-08-05T06:38:30.310Z
Link: CVE-2023-4171
Vulnrichment
Updated: 2024-08-02T07:17:12.135Z
NVD
Status : Modified
Published: 2023-08-05T21:15:09.490
Modified: 2024-11-21T08:34:32.367
Link: CVE-2023-4171
Redhat
No data.