By changing the filename parameter in the request, an attacker could delete any file with the permissions of the Vuforia server account.
2023-06-07T22:15:09.737
2024-11-21T07:56:37.357
Modified
CVSSv3.1: 6.2 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ptc | vuforia_studio | < 9.9 | Yes |