Security Advisory
CVE-2022-25336
5.3
MEDIUM
Vulnerability Description
Ibexa DXP ezsystems/ezpublish-kernel 7.5.x before 7.5.26 and 1.3.x before 1.3.12 allows Insecure Direct Object Reference (IDOR) attacks against image files because the image path and filename can be correctly deduced.
Published Date
February 18, 2022
Official Source
NIST NVD Advisory