Lucene search

K
cvelistMitreCVELIST:CVE-2022-25336
HistoryFeb 18, 2022 - 5:49 p.m.

CVE-2022-25336

2022-02-1817:49:08
mitre
www.cve.org
1
ibexa dxp
ezsystems
ezpublish-kernel
insecure direct object reference
idor
image files

EPSS

0.001

Percentile

32.5%

Ibexa DXP ezsystems/ezpublish-kernel 7.5.x before 7.5.26 and 1.3.x before 1.3.12 allows Insecure Direct Object Reference (IDOR) attacks against image files because the image path and filename can be correctly deduced.

EPSS

0.001

Percentile

32.5%

Related for CVELIST:CVE-2022-25336