TVN ID | TVN-202101011 |
---|---|
CVE ID | CVE-2021-22857 |
CVSS | 7.5 (High) CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Affected Products | CGE property management system version 1.00 |
Description | The CGE page with download function contains a Directory Traversal vulnerability. Attackers can use this loophole to download system files arbitrarily. |
Solution | Update CGE property management system to the latest version. |
Credit | Jia-Rong Chen |
Public Date | 2021-02-17 |