CVE-2024-31850

A path traversal vulnerability exists in the Java version of CData Arc < 23.4.8839 when running using the embedded Jetty server, which could allow an unauthenticated remote attacker to gain access to sensitive information and perform limited actions.
Configurations

No configuration.

History

21 Nov 2024, 09:14

Type Values Removed Values Added
References () https://www.tenable.com/security/research/tra-2024-09 - () https://www.tenable.com/security/research/tra-2024-09 -

08 Apr 2024, 18:49

Type Values Removed Values Added
Summary
  • (es) Existe una vulnerabilidad de path traversal en la versión Java de CData Arc &lt; 23.4.8839 cuando se ejecuta utilizando el servidor Jetty integrado, lo que podría permitir que un atacante remoto no autenticado obtenga acceso a información confidencial y realice acciones limitadas.

05 Apr 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-05 18:15

Updated : 2024-11-21 09:14


NVD link : CVE-2024-31850

Mitre link : CVE-2024-31850

CVE.ORG link : CVE-2024-31850


JSON object : View

Products Affected

No product.

CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')