HIGH
Path traversal in Identity and Directory Management System
Published Sep 21, 2022
7.5
HIGHCVSS 3.1
EPSS 0.85%
Description
The Identity and Directory Management System developed by Çekino Bilgi Teknolojileri before version 2.1.25 has an unauthenticated Path traversal vulnerability. This has been fixed in the version 2.1.25
Affected products
-
- Version unspecifiedStatusaffectedConstraints<2.1.25
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Çekino Bilgi Teknolojileri | Çekino Bilgi Teknolojileri | unaffected |
|
- Identity and Directory Management System Project / Identity and Directory Management System Application< 2.1.25
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
Vendor solution
Vulnerable Identity and Directory Management System module should be updated to the 2.1.25 version provided by the vendor.
Weaknesses (2)
References (2)
- https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-22-0636 government-resource
- https://www.usom.gov.tr/bildirim/tr-22-0636 government-resourcebroken-linkThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-22-0636 | government-resource | |
| https://www.usom.gov.tr/bildirim/tr-22-0636 | government-resourcebroken-linkThird Party Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner TR-CERT
Published Sep 21, 2022
Updated May 20, 2026
Reserved Jun 30, 2022
Link CVE-2022-2265
CISA Vulnrichment
Updated May 27, 2025