CVE-2022-24241
7.5HIGHACEweb Online Portal 3.5.065 was discovered to contain an External Controlled File Path and Name vulnerability via the txtFilePath parameter in attachments.awp.
Published: 6/2/2022Updated: 11/21/2024
Description
ACEweb Online Portal 3.5.065 was discovered to contain an External Controlled File Path and Name vulnerability via the txtFilePath parameter in attachments.awp.
AI AnalysisPowered by AI
Affected Products
acewareaceweb_online_portal
References
- http://aceware.comProduct
- http://aceweb.comProduct
- https://www.aceware.com/forum/viewtopic.php?f=7&t=481Release NotesVendor Advisory
- http://aceware.comProduct
- http://aceweb.comProduct
- https://www.aceware.com/forum/viewtopic.php?f=7&t=481Release NotesVendor Advisory