Fox-IT DataDiode (aka Fox DataDiode) 3.4.3 suffers from a path traversal vulnerability with resultant arbitrary writing of files. A remote attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the downstream node user. Exploitation of this issue does not require user interaction.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-05-30T00:00:00

Updated: 2023-05-30T00:00:00

Reserved: 2022-12-19T00:00:00


Link: CVE-2022-47526

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-05-31T00:15:09.647

Modified: 2023-06-07T15:10:19.793


Link: CVE-2022-47526

JSON object: View

cve-icon Redhat Information

No data.

CWE