CVE-2022-1034

There is a Unrestricted Upload of File vulnerability in ShowDoc v2.10.3 in GitHub repository star7th/showdoc prior to 2.10.4.
Configurations

Configuration 1 (hide)

cpe:2.3:a:showdoc:showdoc:*:*:*:*:*:*:*:*

History

28 Mar 2022, 21:03

Type Values Removed Values Added
First Time Showdoc
Showdoc showdoc
CWE CWE-434
CVSS v2 : unknown
v3 : unknown
v2 : 6.5
v3 : 7.2
References (CONFIRM) https://huntr.dev/bounties/d205c489-3266-4ac4-acb7-c8ee570887f7 - (CONFIRM) https://huntr.dev/bounties/d205c489-3266-4ac4-acb7-c8ee570887f7 - Exploit, Third Party Advisory
References (MISC) https://github.com/star7th/showdoc/commit/bd792a89c0325836fbd64784f4c4117c0171416b - (MISC) https://github.com/star7th/showdoc/commit/bd792a89c0325836fbd64784f4c4117c0171416b - Patch, Third Party Advisory
CPE cpe:2.3:a:showdoc:showdoc:*:*:*:*:*:*:*:*

22 Mar 2022, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-03-22 08:15

Updated : 2023-12-10 14:22


NVD link : CVE-2022-1034

Mitre link : CVE-2022-1034

CVE.ORG link : CVE-2022-1034


JSON object : View

Products Affected

showdoc

  • showdoc
CWE
CWE-434

Unrestricted Upload of File with Dangerous Type