Back to Database
Status published
Unknown
CVE-2022-46493
Default version of nbnbk was discovered to contain an arbitrary...
Vulnerability Description
Default version of nbnbk was discovered to contain an arbitrary file upload vulnerability via the component /api/User/download_img.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-46493
Credits & Attribution
No credits recorded in the NVD database.
References
More from nbnbk project
View All →CVE-2022-46492
nbnbk commit 879858451d53261d10f77d4709aee2d01c72c301 was discovered to contain an arbitrary file...
Unknown
0
CVE-2022-46491
A Cross-Site Request Forgery (CSRF) vulnerability in the Add Administrator...
Unknown
0
CVE-2022-31386
A Server-Side Request Forgery (SSRF) in the getFileBinary function of...
Critical
9.1
Affected Vendor
nbnbk project
View all reports →Affected Software
nbnbk
Vulnerable Versions:
Unknown
Timeline
Official Publish:
December 22nd, 2022
Last Modified:
April 15th, 2025
Added to House:
July 21st, 2026
CVSS Vectors
No vector data available
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.