Security Advisory

CVE-2022-25336

5.3
MEDIUM

Vulnerability Description

Ibexa DXP ezsystems/ezpublish-kernel 7.5.x before 7.5.26 and 1.3.x before 1.3.12 allows Insecure Direct Object Reference (IDOR) attacks against image files because the image path and filename can be correctly deduced.
Published Date February 18, 2022
Official Source NIST NVD Advisory