CyberRota Analysis
AI-GeneratedThe DigiDoc4 client, versions 4.0.0 to 4.11.0, is vulnerable to a path traversal attack that allows unauthorized access to files outside of the intended directory. This could lead to exposure of sensitive data, making it critical for organizations using this software to prioritize patching to mitigate potential data breaches. Users and administrators of the DigiDoc4 client should take immediate action to update to a secure version.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Estonian Information System Authority (RIA) DigiDoc4 client. This issue affects DigiDoc4: from 4.0.0 before 4.11.0.