CVE-2022-30625

Directory listing is a web server function that displays the directory contents when there is no index file in a specific website directory. A directory listing provides an attacker with the complete index of all the resources located inside of the directory. The specific risks and consequences vary depending on which files are listed and accessible.
References
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:chcnav:p5e_gnss_firmware:4.1:*:*:*:*:*:*:*
cpe:2.3:o:chcnav:p5e_gnss_firmware:4.2:*:*:*:*:*:*:*
cpe:2.3:h:chcnav:p5e_gnss:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:03

Type Values Removed Values Added
References () https://www.gov.il/en/Departments/faq/cve_advisories - Third Party Advisory () https://www.gov.il/en/Departments/faq/cve_advisories - Third Party Advisory
CVSS v2 : unknown
v3 : 5.3
v2 : unknown
v3 : 5.7

Information

Published : 2022-07-18 13:15

Updated : 2024-11-21 07:03


NVD link : CVE-2022-30625

Mitre link : CVE-2022-30625

CVE.ORG link : CVE-2022-30625


JSON object : View

Products Affected

chcnav

  • p5e_gnss_firmware
  • p5e_gnss
CWE
CWE-548

Exposure of Information Through Directory Listing

CWE-200

Exposure of Sensitive Information to an Unauthorized Actor