cve/2022/CVE-2022-28784.md
2024-06-18 02:51:15 +02:00

917 B

CVE-2022-28784

Description

Path traversal vulnerability in Galaxy Themes prior to SMR May-2022 Release 1 allows attackers to list file names in arbitrary directory as system user. The patch addresses incorrect implementation of file path validation check logic.

POC

Reference

Github

No PoCs found on GitHub currently.