CVE-2022-42725: High severity LinuxMint Warpinator vulnerability
Published Oct 10, 2022
·Updated
Warpinator through 1.2.14 allows access outside of an intended directory, as demonstrated by symbolic directory links.
Affected Software
1 affected component
LinuxMint Warpinator<=1.2.14
Remediation
Event History
Oct 10, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-42725?
The severity of CVE-2022-42725 is high with a severity value of 7.5.
2
What does CVE-2022-42725 allow?
CVE-2022-42725 allows access outside of an intended directory through symbolic directory links.
3
Which software versions are affected by CVE-2022-42725?
Warpinator versions up to and including 1.2.14 are affected by CVE-2022-42725.
4
Are there any references available for CVE-2022-42725?
Yes, you can find references for CVE-2022-42725 at the following links: [link1](http://www.openwall.com/lists/oss-security/2022/10/24/1), [link2](http://www.openwall.com/lists/oss-security/2023/04/26/1), [link3](https://github.com/linuxmint/warpinator/commit/5244c33d4c109ede9607b9d94461650410e2cddc)
5
What is the Common Weakness Enumeration (CWE) of CVE-2022-42725?
The Common Weakness Enumeration (CWE) of CVE-2022-42725 is 59.