CVE-2023-6252

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
22/11/2023
Last modified:
29/11/2023

Description

Path traversal vulnerability in Chalemelon Power framework, affecting the getImage parameter. This vulnerability could allow a remote user to read files located on the server and gain access to sensitive information such as configuration files.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hyphensolutions:chameleon_power:1.0:*:*:*:*:*:*:*