Home
HIGH: 7.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:L/SC:N/SI:H/SA:NDefault status
unaffected
30
affected
50
affected
100
affected
300
affected
500
affected
1000
affected
2000
affected
3000
affected
3500
affected
6000
affected
7000
affected
Description
Unauthenticated Path Traversal with Arbitrary File Deletion in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform The deletehidden parameter allows path traversal deletion of arbitrary .tgz files.
Problem types
CWE-22 Unauthenticated Path Traversal with Arbitrary File Deletion
Product status
30
50
100
300
500
1000
2000
3000
3500
6000
7000
Credits
Abdul Mhanni
References
www.abdulmhsblog.com/posts/webfmvulns/