CVE Vulnerabilities

CVE-2022-25098

Published: Feb 24, 2022 | Modified: Mar 02, 2022
CVSS 3.x
9.1
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
CVSS 2.x
6.4 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

ECTouch v2 suffers from arbitrary file deletion due to insufficient filtering of the filename parameter.

Affected Software

Name Vendor Start Version End Version
Ectouch Ectouch 2.0 (including) 2.0 (including)

References