Vulnerability Details CVE-2022-41711
Badaso version 2.6.0 allows an unauthenticated remote attacker to execute arbitrary code remotely on the server. This is possible because the application does not properly validate the data uploaded by users.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.027
EPSS Ranking 85.1%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-41711
-
cpe:2.3:a:uatech:badaso:2.6.0