CVE-2021-32008 – Logged-in Administrator may get unrestricted file system access
https://notcve.org/view.php?id=CVE-2021-32008
This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions. Improper Limitation of a Pathname to restricted directory, allows logged in GateManager admin to delete system Files or Directories. Este problema afecta a: Secomea GateManager versión 9.6.621421014 y todas las versiones anteriores. Una limitación inapropiada de un nombre de ruta al directorio restringido, permite al administrador de GateManager que ha iniciado la sesión eliminar archivos o directorios del sistema • https://www.secomea.com/support/cybersecurity-advisory • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CWE-552: Files or Directories Accessible to External Parties •