Vulnerabilities > Softwarepublico > I3Geo > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-07-14 CVE-2022-32409 Path Traversal vulnerability in Softwarepublico I3Geo 7.0.5
A local file inclusion (LFI) vulnerability in the component codemirror.php of Portal do Software Publico Brasileiro i3geo v7.0.5 allows attackers to execute arbitrary PHP code via a crafted HTTP request.
network
low complexity
softwarepublico CWE-22
critical
9.8