Vulnerabilities (CVE)

Filtered by vendor Chinasea Subscribe
Filtered by product Qb Smart Service Robot
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-44162 1 Chinasea 1 Qb Smart Service Robot 2021-12-27 5.0 MEDIUM 7.5 HIGH
Chain Sea ai chatbot system’s specific file download function has path traversal vulnerability. The function has improper filtering of special characters in URL parameters, which allows a remote attacker to download arbitrary system files without authentication.