Security Advisory
CVE-2021-45967
9.8
CRITICAL
Vulnerability Description
An issue was discovered in Pascom Cloud Phone System before 7.20.x. A configuration error between NGINX and a backend Tomcat server leads to a path traversal in the Tomcat server, exposing unintended endpoints.
Published Date
March 18, 2022
Official Source
NIST NVD Advisory