CVE-2022-26838: Path Traversal
Published Aug 3, 2023
·Updated
Path traversal vulnerability in Importing Mobile Device Data of Cybozu Remote Service 3.1.2 allows a remote authenticated attacker to cause a denial-of-service (DoS) condition.
Affected Software
1 affected component
Cybozu Remote Service Manager=3.1.2
Event History
Aug 3, 2023
CVE Published
via MITRE·01:16 PM
Data Sourced
via MITRE·01:16 PM
DescriptionWeakness
Data Sourced
03:15 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-26838.
2
What is the affected software?
The affected software is Cybozu Remote Service Manager 3.1.2.
3
What is the severity of CVE-2022-26838?
The severity of CVE-2022-26838 is medium with a CVSS score of 6.5.
4
How can a remote authenticated attacker exploit this vulnerability?
A remote authenticated attacker can exploit this vulnerability by performing a path traversal attack through the Importing Mobile Device Data functionality of Cybozu Remote Service 3.1.2.
5
Are there any references related to CVE-2022-26838?
Yes, you can find more information about CVE-2022-26838 at the following references: [link1](https://kb.cybozu.support/article/37653/) and [link2](https://jvn.jp/en/jp/JVN52694228/).