CVE-2022-36243 Vulnerability Details

  /     /     /  

CVE-2022-36243 Metadata Quick Info

CVE Published: 30/05/2023 | CVE Updated: 03/08/2024 | CVE Year: 2022
Source: ShopBeat | Vendor: Shop Beat | Product: studio
Status : PUBLISHED

CVE-2022-36243 Description

Shop Beat Solutions (pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to Directory Traversal via server.shopbeat.co.za. Information Exposure Through Directory Listing vulnerability in "studio" software of Shop Beat. This issue affects: Shop Beat studio studio versions prior to 3.2.57 on arm.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID: CWE-548
CWE Name: CWE-548 Information Exposure Through Directory Listing
Source: Shop Beat

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).