CVE-2021-44674: Path Traversal
Published Jan 3, 2022
·Updated
An information exposure issue has been discovered in Opmantek Open-AudIT 4.2.0. The vulnerability allows an authenticated attacker to read file outside of the restricted directory.
Affected Software
1 affected component
Opmantek Open-AudIT=4.2.0
Event History
Jan 3, 2022
CVE Published
via MITRE·12:35 PM
Data Sourced
via MITRE·12:35 PM
Description
Data Sourced
via NVD·01:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-44674?
CVE-2021-44674 is an information exposure vulnerability found in Opmantek Open-AudIT 4.2.0.
2
How does CVE-2021-44674 impact Opmantek Open-AudIT?
CVE-2021-44674 allows an authenticated attacker to read files outside of the restricted directory.
3
What is the severity of CVE-2021-44674?
The severity of CVE-2021-44674 is medium, with a CVSS severity score of 6.5.
4
How can I fix CVE-2021-44674 in Opmantek Open-AudIT?
To fix CVE-2021-44674, it is recommended to upgrade to a version of Open-AudIT that is not affected by the vulnerability, such as version 4.3.0 or later.
5
Where can I find more information about CVE-2021-44674?
You can find more information about CVE-2021-44674 in the release notes for Open-AudIT v4.3.0, as well as on the Opmantek community website.