Auto Generated CVE annotations [Mon Jun 6 13:40:27 UTC 2022] 🤖

patch-1
GitHub Action 2022-06-06 13:40:27 +00:00
parent ba23107821
commit 3606a60820
1 changed files with 3 additions and 3 deletions

View File

@ -3,7 +3,7 @@ id: CVE-2022-31268
info: info:
name: Gitblit 1.9.3 - Path traversal name: Gitblit 1.9.3 - Path traversal
author: 0x_Akoko author: 0x_Akoko
severity: medium severity: high
description: | description: |
A Path Traversal vulnerability in Gitblit 1.9.3 can lead to reading website files via /resources//../ (e.g., followed by a WEB-INF or META-INF pathname). A Path Traversal vulnerability in Gitblit 1.9.3 can lead to reading website files via /resources//../ (e.g., followed by a WEB-INF or META-INF pathname).
reference: reference:
@ -16,8 +16,8 @@ info:
cve-id: CVE-2022-31268 cve-id: CVE-2022-31268
cwe-id: CWE-22 cwe-id: CWE-22
metadata: metadata:
verified: true
shodan-query: http.html:"Gitblit" shodan-query: http.html:"Gitblit"
verified: "true"
tags: cve,cve2022,lfi,gitblit tags: cve,cve2022,lfi,gitblit
requests: requests: