Critical severity9.8NVD Advisory· Published Jan 18, 2023· Updated Jun 17, 2026
CVE-2022-41417
CVE-2022-41417
Description
BlogEngine.NET v3.3.8.0 allows an attacker to create any folder with "files" prefix under ~/App_Data/.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- BlogEngine.NET/BlogEngine.NETdescription
- Range: = 3.3.8.0
Patches
Vulnerability mechanics
References
2- github.com/BlogEngine/BlogEngine.NET/commit/7f927567db94462ffd37e128c0a53c11c1f81a8dnvdPatchThird Party Advisory
- gist.github.com/tree-chtsec/22a0a531ea188fd5b76fe11d32f41e95nvdThird Party Advisory
News mentions
0No linked articles in our index yet.