Directory Traversal Vulnerability in DataEase by DataEase
CVE-2023-40772
4.3MEDIUM
What is CVE-2023-40772?
A directory traversal vulnerability in DataEase versions before 1.18.10 enables remote attackers to access sensitive files on the server by sending specially crafted requests to the StaticResourceController.java component. This flaw can lead to unauthorized information disclosure, potentially impacting user data and system integrity.
Affected Version(s)
DataEase 0 < 1.18.10
