VYPR
Medium severity5.3NVD Advisory· Published Feb 24, 2022· Updated Jun 17, 2026

CVE-2022-24633

CVE-2022-24633

Description

All versions of FileCloud prior to 21.3 are vulnerable to user enumeration. The vulnerability exists in the parameter "path" passing "/SHARED/". A malicious actor could identify the existence of users by requesting share information on specified share paths.

Affected products

3
  • cpe:2.3:a:filecloud:filecloud:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:filecloud:filecloud:*:*:*:*:*:*:*:*range: <21.3.0.18447
    • (no CPE)range: <21.3
  • FileCloud/FileClouddescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.