CVE-2022-48253

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
11/01/2023
Last modified:
08/04/2025

Description

nhttpd in Nostromo before 2.1 is vulnerable to a path traversal that may allow an attacker to execute arbitrary commands on the remote server. The vulnerability occurs when the homedirs option is used.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:nazgul:nostromo:*:*:*:*:*:*:*:* 2.1 (excluding)