A vulnerability classified as critical has been found in FileCloud. Affected is the NTFS handler which leads to improper access controls. It is possible to launch the attack remotely but it demands some form of authentication. Upgrading to version 21.3.5.18513 is able to address this issue. It is recommended to upgrade the affected component.
References
| Link | Resource |
|---|---|
| https://www.filecloud.com/supportdocs/fcdoc/2v/server/security-advisories/2022-security-advisories/advisory-2022-06-01-potential-unauthorized-data-access-when-using-network-folders-with-ntfs-permissions | Vendor Advisory |
| https://vuldb.com/?id.201960 | Third Party Advisory |
| https://www.scip.ch/?news.20220615 | Third Party Advisory |
Configurations
Information
Published : 2022-06-15 10:15
Updated : 2022-06-23 18:10
NVD link : CVE-2022-1958
Mitre link : CVE-2022-1958
JSON object : View
Products Affected
filecloud
- filecloud
CWE
