CVE-2022-47526 Information
Jun 02, 2023
cve
Description
Fox-IT DataDiode (aka Fox DataDiode) 3.4.3 suffers from a path traversal vulnerability with resultant arbitrary writing of files. A remote attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the downstream node user. Exploitation of this issue does not require user interaction.
Reference
https://www.fox-it.com/nl-en/fox-crypto/fox-datadiode/ https://www.fox-it.com/nl-en/software-vulnerability-report/
Share on: