← Back

CVE-2022-41711

nvd nist
Published: Oct 25, 2022Modified: May 7, 2025

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

Badaso version 2.6.0 allows an unauthenticated remote attacker to execute arbitrary code remotely on the server. This is possible because the application does not properly validate the data uploaded by users.

Affected (1)

Products: Uatech: Badaso
1 product
Badaso
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 2.6.0

References (4)

Source: help@fluidattacks.com
ExploitIssue TrackingThird Party Advisory
Source: help@fluidattacks.com
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitIssue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory

Timeline

No history available yet.