Download Center fails to properly validate the file path submitted by a user, An attacker can exploit this vulnerability to gain unauthorized access to sensitive files or directories without appropriate permission restrictions. Download Center on ADM 4.0 and above will be affected. Affected products and versions include: Download Center 1.1.5.r1280 and below.
References
Link | Resource |
---|---|
https://www.asustor.com/security/security_advisory_detail?id=24 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ASUSTOR1
Published: 2023-05-31T08:36:37.182Z
Updated: 2023-05-31T08:36:37.182Z
Reserved: 2023-05-17T05:56:36.390Z
Link: CVE-2023-2749
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-05-31T09:15:10.490
Modified: 2023-06-07T14:07:01.237
Link: CVE-2023-2749
JSON object: View
Redhat Information
No data.