Medium severity6.5NVD Advisory· Published Jan 26, 2023· Updated Jun 17, 2026
CVE-2022-38088
CVE-2022-38088
Description
A directory traversal vulnerability exists in the httpd downfile.cgi functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted HTTP request can lead to arbitrary file read. An attacker can send an HTTP request to trigger this vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3G5.0.1.5-210720-141020+ 1 more
- (no CPE)range: G5.0.1.5-210720-141020
- (no CPE)range: G5.0.1.5-210720-141020
- cpe:2.3:o:siretta:quartz-gold_firmware:g5.0.1.5-210720-141020:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- talosintelligence.com/vulnerability_reports/TALOS-2022-1609nvdExploitThird Party Advisory
- www.talosintelligence.com/vulnerability_reports/TALOS-2022-1609nvd
News mentions
0No linked articles in our index yet.