CVE-2022-41217
Published Feb 22, 2023Cloudflow contains a unauthenticated file upload vulnerability, which makes it possible for an attacker to upload malicious files to the CLOUDFLOW PROOFSCOPE built-in storage.
Vendor/product archive
2 CVEs tagged to hybridsoftware / cloudflow — 1 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.
Cloudflow contains a unauthenticated file upload vulnerability, which makes it possible for an attacker to upload malicious files to the CLOUDFLOW PROOFSCOPE built-in storage.
Local File Inclusion vulnerability within Cloudflow allows attackers to retrieve confidential information from the system.