Vulnerability CVE-2022-31324


Published: 2022-09-13   Modified: 2022-09-14

Description:
An arbitrary file download vulnerability in the downloadAction() function of Penta Security Systems Inc WAPPLES v6.0 r3 4.10-hotfix1 allows attackers to download arbitrary files via a crafted POST request.

 References:
https://medium.com/@_sadshade/wapples-web-application-firewall-multiple-vulnerabilities-35bdee52c8fb
https://www.pentasecurity.com/product/wapples/

Copyright 2026, cxsecurity.com

 

Back to Top