CVE-2022-35195: High severity testlink vulnerability
Published Sep 16, 2022
·Updated
TestLink 1.9.20 Raijin was discovered to contain a broken access control vulnerability at /lib/attachments/attachmentdownload.php
Affected Software
1 affected component
TestLink TestLink=1.9.20
Event History
Sep 16, 2022
CVE Published
via MITRE·03:36 PM
Data Sourced
via MITRE·03:36 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-35195?
CVE-2022-35195 has a medium severity level due to its impact on access control.
2
How do I fix CVE-2022-35195?
To fix CVE-2022-35195, upgrade to the latest version of TestLink that resolves this vulnerability.
3
What systems are affected by CVE-2022-35195?
CVE-2022-35195 specifically affects TestLink version 1.9.20.
4
What type of vulnerability is CVE-2022-35195?
CVE-2022-35195 is categorized as a broken access control vulnerability.
5
What does CVE-2022-35195 allow an attacker to do?
CVE-2022-35195 allows unauthorized access to attachment downloads in TestLink.