CVE-2022-37700: Path Traversal
Published Sep 19, 2022
·Updated
Zentao Demo15 is vulnerable to Directory Traversal. The impact is: obtain sensitive information (remote). The component is: URL : view-source:https://demo15.zentao.pm/user-login.html/zentao/index.php?mode=getconfig.
Affected Software
1 affected component
EasyCorp ZenTao=15.0
Event History
Sep 19, 2022
CVE Published
via MITRE·03:58 PM
Data Sourced
via MITRE·03:58 PM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2022-37700.
2
What is the severity of CVE-2022-37700?
The severity of CVE-2022-37700 is high.
3
What is the impact of CVE-2022-37700?
The impact of CVE-2022-37700 is obtaining sensitive information remotely.
4
Which component is affected by CVE-2022-37700?
The URL component view-source:https://demo15.zentao.pm/user-login.html/zentao/index.php?mode=getconfig is affected by CVE-2022-37700.
5
How can I fix CVE-2022-37700?
To fix CVE-2022-37700, upgrade to a version of EasyCorp ZenTao that is not affected by this vulnerability.