First published: Tue Dec 06 2022(Updated: )
Improper Privilege Management in GitHub repository ikus060/rdiffweb prior to 2.5.2.
Credit: security@huntr.dev security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Ikus-soft Rdiffweb | <2.5.2 | |
pip/rdiffweb | <2.5.2 | 2.5.2 |
<2.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-4314.
The severity of CVE-2022-4314 is critical with a score of 9.8.
The affected software is Ikus-soft Rdiffweb version up to exclusive 2.5.2.
To fix this vulnerability, update your GitHub repository ikus060/rdiffweb to version 2.5.2 or above.
You can find more information about this vulnerability at the following references: [GitHub Commit](https://github.com/ikus060/rdiffweb/commit/b2df3679564d0daa2856213bb307d3e34bd89a25), [Huntr.dev](https://huntr.dev/bounties/b2dc504d-92ae-4221-a096-12ff223d95a8).