CVE Vulnerabilities

CVE-2022-30625

Exposure of Information Through Directory Listing

Published: Jul 18, 2022 | Modified: Nov 21, 2024
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Directory listing is a web server function that displays the directory contents when there is no index file in a specific website directory. A directory listing provides an attacker with the complete index of all the resources located inside of the directory. The specific risks and consequences vary depending on which files are listed and accessible.

Weakness

A directory listing is inappropriately exposed, yielding potentially sensitive information to attackers.

Affected Software

Name Vendor Start Version End Version
P5e_gnss_firmware Chcnav 4.1 (including) 4.1 (including)
P5e_gnss_firmware Chcnav 4.2 (including) 4.2 (including)

Potential Mitigations

References