AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2022-36537.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSUnscoredNo severity score in this snapshot.
EXPLOITATION STATUSCISA known exploitedAdded Feb 27, 2023
RECORD STATUSAwaiting NVD dataModified Feb 27, 2023

Disclosure summary

ZK Framework AuUploader servlets contain an unspecified vulnerability that could allow an attacker to retrieve the content of a file located in the web context. The ZK Framework is an open-source Java framework. This vulnerability can impact multiple products, including but not limited to ConnectWise R1Soft Server Backup Manager.

CISA remediation guidance

Apply updates per vendor instructions.

Original records & references

PUBLISHED 2023-02-27T00:00:00-05:00
MODIFIED 2023-02-27T00:00:00-05:00
INGESTED 2026-10-06T11:42:58-04:00