PT-2026-71937 · Dtstack · Dtstack Taier
CVSS v4.0
5.1
Medium
| Vector | AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X |
Name of the Vulnerable Software and Affected Versions
DTStack Taier version 1.4.0
Description
A path traversal issue exists within the Cluster Creation component in the
ClusterController.java file. The vulnerability occurs in the FileUtils.deleteDirectory() function when the clusterName argument is manipulated, allowing for remote exploitation.Recommendations
Upgrade to version 1.5.0.
Exploit
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dtstack Taier