← Back to browse · API

CVE-2022-29517

Severity
CRITICAL
CVSS
9.9
EPSS
0.60199
Risk score
60.67
CISA KEV
No
PoC
No
Published
2022-12-19
Modified
2025-04-15
First seen
2026-08-07
Aliases
EUVD-2022-33854, GHSA-66W9-V6PC-5W4R
Products
Lansweeper:lansweeper 10.1.1.0
Sources
euvd EUVD-2022-33854

Description

A directory traversal vulnerability exists in the HelpdeskActions.aspx edittemplate functionality of Lansweeper lansweeper 10.1.1.0. A specially-crafted HTTP request can lead to arbitrary file upload. An attacker can send an HTTP request to trigger this vulnerability.

References