Lucene search

K
nvd[email protected]NVD:CVE-2022-30625
HistoryJul 18, 2022 - 1:15 p.m.

CVE-2022-30625

2022-07-1813:15:10
CWE-200
CWE-548
web.nvd.nist.gov
1
web server
directory listing
vulnerability
cve-2022-30625
risks
consequences

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

EPSS

0.001

Percentile

31.3%

Directory listing is a web server function that displays the directory contents when there is no index file in a specific website directory. A directory listing provides an attacker with the complete index of all the resources located inside of the directory. The specific risks and consequences vary depending on which files are listed and accessible.

Affected configurations

Nvd
Node
chcnavp5e_gnss_firmwareMatch4.1
OR
chcnavp5e_gnss_firmwareMatch4.2
AND
chcnavp5e_gnssMatch-
VendorProductVersionCPE
chcnavp5e_gnss_firmware4.1cpe:2.3:o:chcnav:p5e_gnss_firmware:4.1:*:*:*:*:*:*:*
chcnavp5e_gnss_firmware4.2cpe:2.3:o:chcnav:p5e_gnss_firmware:4.2:*:*:*:*:*:*:*
chcnavp5e_gnss-cpe:2.3:h:chcnav:p5e_gnss:-:*:*:*:*:*:*:*

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

EPSS

0.001

Percentile

31.3%

Related for NVD:CVE-2022-30625