CVE-2022-22821

NVIDIA NeMo before 1.6.0 contains a vulnerability in ASR WebApp, in which ../ Path Traversal may lead to deletion of any directory when admin privileges are available.
Configurations

Configuration 1 (hide)

cpe:2.3:a:nvidia:nemo:*:*:*:*:*:*:*:*

History

21 Nov 2024, 06:47

Type Values Removed Values Added
References () https://github.com/NVIDIA/NeMo/security/advisories/GHSA-rpx7-33j2-xx9x - Patch, Third Party Advisory () https://github.com/NVIDIA/NeMo/security/advisories/GHSA-rpx7-33j2-xx9x - Patch, Third Party Advisory
CVSS v2 : 2.1
v3 : 4.4
v2 : 2.1
v3 : 2.0

Information

Published : 2022-01-10 14:12

Updated : 2024-11-21 06:47


NVD link : CVE-2022-22821

Mitre link : CVE-2022-22821

CVE.ORG link : CVE-2022-22821


JSON object : View

Products Affected

nvidia

  • nemo
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')