Vulnerability Details CVE-2022-41705
Badaso version 2.6.3 allows an unauthenticated remote attacker to execute arbitrary code remotely on the server. This is possible because the application does not properly validate the data uploaded by users.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.118
EPSS Ranking 93.9%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-41705
-
cpe:2.3:a:uatech:badaso:2.6.3