First published: Fri May 17 2024(Updated: )
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Lenderd 1003 Mortgage Application allows Relative Path Traversal.This issue affects 1003 Mortgage Application: from n/a through 1.75.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Lenderd 1003 Mortgage Application | <=1.75 | |
WordPress 1003 Mortgage Application plugin | <=1.75 |
Update to 1.80 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-45368 has a moderate severity rating due to its potential for exploitation through relative path traversal.
To fix CVE-2022-45368, update the Lenderd 1003 Mortgage Application or the WordPress 1003 Mortgage Application plugin to version 1.76 or later.
CVE-2022-45368 affects Lenderd 1003 Mortgage Application versions up to and including 1.75 and the WordPress 1003 Mortgage Application plugin versions up to and including 1.75.
CVE-2022-45368 is classified as a Path Traversal vulnerability that allows attackers to access restricted directories.
Yes, CVE-2022-45368 can potentially be exploited remotely if the application is accessible over the internet.