Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-22651
HistoryNov 21, 2022 - 12:00 a.m.

Simmeth System Supplier Manager Arbitrary File Download Vulnerability

2022-11-2100:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
simmeth system
supplier manager
arbitrary file download
vulnerability
supply chain software
german company
exploited
api
web server

0.002 Low

EPSS

Percentile

53.9%

Simmeth System Supplier Manager is a supply chain software from Simmeth System, a German company, and an arbitrary file download vulnerability exists in versions prior to Simmeth System Supplier Manager 5.6, which can be exploited by attackers to download arbitrary files from a web server by abusing the API. The vulnerability can be exploited to download arbitrary files from the Web server by misusing the API.

CPENameOperatorVersion
simmeth system supplier managerlt5.6

0.002 Low

EPSS

Percentile

53.9%

Related for CNVD-2023-22651