CVE Vulnerabilities

CVE-2022-25098

Published: Feb 24, 2022 | Modified: Nov 21, 2024
CVSS 3.x
9.1
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
CVSS 2.x
6.4 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

ECTouch v2 suffers from arbitrary file deletion due to insufficient filtering of the filename parameter.

Affected Software

NameVendorStart VersionEnd Version
EctouchEctouch2.0 (including)2.0 (including)

References