Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-88927
HistoryOct 14, 2022 - 12:00 a.m.

Dell GeoDrive Path Traversal Vulnerability

2022-10-1400:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
dell
geodrive
path traversal
vulnerability
windows
desktops
servers
emc ecs
atmos storage
networked system
file path
unauthorized access
file system

EPSS

0

Percentile

9.9%

Dell GeoDrive is a free application from Dell, Inc. Dell EMC ECS and Atmos storage can be accessed from Microsoft Windows desktops and servers.A path traversal vulnerability exists in versions of Dell GeoDrive prior to 2.2.3. The vulnerability stems from the failure of a networked system or product to properly filter special elements in a resource or file path. A low privilege attacker could exploit the vulnerability to gain unauthorized delete access to files stored on the server file system with privileges to the GeoDrive service

EPSS

0

Percentile

9.9%

Related for CNVD-2022-88927