Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-65371
HistoryMar 22, 2022 - 12:00 a.m.

Pascom Cloud Phone System Path Traversal Vulnerability

2022-03-2200:00:00
China National Vulnerability Database
www.cnvd.org.cn
8

0.676 Medium

EPSS

Percentile

98.0%

Pascom Cloud Phone System is a cloud phone system from Pascom. Used to provide integrated communication solutions for businesses and individuals, Pascom Cloud Phone System is vulnerable to a path traversal vulnerability that stems from a configuration error before nginx and the back-end server Tomcat, which can be exploited by an attacker to cause path traversal in the Tomcat server, exposing unintended endpoints.

0.676 Medium

EPSS

Percentile

98.0%

Related for CNVD-2022-65371