6.5
CVSSv3

CVE-2022-45894

Published: 25/12/2022 Updated: 04/01/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

GetFile.aspx in Planet eStream prior to 6.72.10.07 allows ..\ directory traversal to read arbitrary local files.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

planetestream planet estream

Exploits

Planet eStream versions prior to 6721007 suffer from shell upload, account takeover, broken access control, SQL injection, both persistent and reflective cross site scripting, path traversal, and information disclosure vulnerabilities ...