Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-86386
HistoryNov 25, 2022 - 12:00 a.m.

qpress directory traversal vulnerability

2022-11-2500:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
qpress
directory traversal
vulnerability
patched
evgeniypatlan
path checking
sensitive information
attacker
exploit
cnvd

EPSS

0.003

Percentile

68.7%

qpress is a patched version of the qpress file archiver from EvgeniyPatlan’s personal developer. qpress 11.3 and versions prior to 2022.08.19 contain a directory traversal vulnerability that stems from a lack of path checking when processing directory requests, which could be exploited by an attacker to obtain sensitive information.

EPSS

0.003

Percentile

68.7%