CVE-2022-36593: Path Traversal
Published Sep 2, 2022
·Updated
kkFileView v4.0.0 was discovered to contain an arbitrary file deletion vulnerability via the fileName parameter at /controller/FileController.java.
Affected Software
1 affected component
keking kkFileView=4.0.0
Event History
Sep 2, 2022
CVE Published
via MITRE·03:19 AM
Data Sourced
via MITRE·03:19 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for kkFileView v4.0.0?
The vulnerability ID for kkFileView v4.0.0 is CVE-2022-36593.
2
What is the severity rating for CVE-2022-36593?
CVE-2022-36593 has a severity rating of 6.5 (medium).
3
What is the affected software version?
kkFileView v4.0.0 is the affected software version.
4
What is the vulnerability in kkFileView v4.0.0?
The vulnerability in kkFileView v4.0.0 is an arbitrary file deletion vulnerability via the fileName parameter in /controller/FileController.java.
5
Is there a fix available for CVE-2022-36593?
At the moment, there is no information available about a fix for CVE-2022-36593. It is recommended to stay updated with security advisories from the software vendor.