Lucene search

K
cvelistJpcertCVELIST:CVE-2022-21132
HistoryMar 07, 2022 - 9:00 a.m.

CVE-2022-21132

2022-03-0709:00:34
jpcert
www.cve.org
1
directory traversal
pfsense-pkg-wireguard
remote attackers
file access

AI Score

6.3

Confidence

High

EPSS

0.001

Percentile

42.5%

Directory traversal vulnerability in pfSense-pkg-WireGuard pfSense-pkg-WireGuard 0.1.5 versions prior to 0.1.5_4 and pfSense-pkg-WireGuard 0.1.6 versions prior to 0.1.6_1 allows a remote authenticated attacker to lead a pfSense user to view a file outside the public folder.

CNA Affected

[
  {
    "product": "pfSense-pkg-WireGuard",
    "vendor": "pfSense",
    "versions": [
      {
        "status": "affected",
        "version": "pfSense-pkg-WireGuard 0.1.5 versions prior to 0.1.5_4 and pfSense-pkg-WireGuard 0.1.6 versions prior to 0.1.6_1"
      }
    ]
  }
]

AI Score

6.3

Confidence

High

EPSS

0.001

Percentile

42.5%

Related for CVELIST:CVE-2022-21132