CVE-2022-24647: Path Traversal
Published Feb 10, 2022
·Updated
Cuppa CMS v1.0 was discovered to contain an arbitrary file deletion vulnerability via the unlink() function.
Affected Software
1 affected component
CuppaCMS CuppaCMS=1.0
Event History
Feb 10, 2022
CVE Published
via MITRE·10:39 PM
Data Sourced
via MITRE·10:39 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-24647?
CVE-2022-24647 is classified as a high severity vulnerability due to its ability to allow arbitrary file deletion.
2
How do I fix CVE-2022-24647?
To fix CVE-2022-24647, it is recommended to update Cuppa CMS to the latest version that addresses this vulnerability.
3
What impact does CVE-2022-24647 have on my system?
CVE-2022-24647 can lead to unauthorized deletion of files, potentially compromising the integrity of your application.
4
Is Cuppa CMS v1.0 the only version affected by CVE-2022-24647?
Yes, CVE-2022-24647 specifically affects Cuppa CMS version 1.0.
5
Can CVE-2022-24647 be exploited remotely?
Yes, CVE-2022-24647 can be exploited remotely if an attacker has access to the affected Cuppa CMS application.