VYPR

Oliver V5 Library

by Softlinkint

CVEs (2)

  • CVE-2021-47755HigJan 15, 2026
    risk 0.49cvss 7.5epss 0.01

    Oliver Library Server v5 contains a file download vulnerability that allows unauthenticated attackers to access arbitrary system files through unsanitized input in the FileServlet endpoint. Attackers can exploit the vulnerability by manipulating the 'fileName' parameter to…

  • CVE-2021-45027HigSep 1, 2022
    risk 0.49cvss 7.5epss 0.02

    An arbitrary file download vulnerability in Oliver v5 Library Server Versions < 5.00.008.053 via the FileServlet function allows for arbitrary file download by an attacker using unsanitized user supplied input.