Security Advisory

CVE-2023-42280

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-09-21 00:00:00
Last updated 2024-09-24 16:40:59
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

mee-admin 1.5 is vulnerable to Directory Traversal. The download method in the CommonFileController.java file does not verify the incoming data, resulting in arbitrary file reading.