从这个网页截图中可以获取到以下关于漏洞的关键信息: KVSS Meta Temp Score: 4.5 Current Exploit Price: $0-$5k CTI Interest Score: 0.31 Summary A vulnerability described as critical has been identified in Chengdu Flash Flood Disaster Monitoring and Warning System 2.0. This vulnerability affects unknown code of the file . Executing manipulation of the argument can lead to path traversal. This vulnerability is handled as CVE-2023-4171. The attack can be executed remotely. Additionally, an exploit exists. Details A vulnerability classified as problematic was found in Chengdu Flash Flood Disaster Monitoring and Warning System 2.0. This vulnerability affects an unknown code block of the file . The manipulation of the argument with an unknown input leads to a path traversal vulnerability. The CWE definition for the vulnerability is CWE-24. The product uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize "../" sequences that can resolve to a location that is outside of that directory. As an impact it is known to affect confidentiality. The weakness was released 08/05/2023. The advisory is available at github.com. This vulnerability was named CVE-2023-4171. Technical details and also a public exploit are known. This vulnerability is assigned to T1006 by the MITRE ATT&CK project.