videnlabs/CVE-2022-22828

videnlabs/CVE-2022-22828

Releases0
Write-up of CVE-2022-22828

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH5 MEDIUM

An insecure direct object reference for the file-download URL in Synametrics SynaMan before 5.0 allows a remote attacker to access unshared files via a modified base64-encoded filename string.