CVE-2024-33620

Absolute path traversal vulnerability exists in ID Link Manager and FUJITSU Software TIME CREATOR. If this vulnerability is exploited, the file contents including sensitive information on the server may be retrieved by an unauthenticated remote attacker.
Configurations

No configuration.

History

21 Nov 2024, 09:17

Type Values Removed Values Added
References () https://jvn.jp/en/jp/JVN65171386/ - () https://jvn.jp/en/jp/JVN65171386/ -
References () https://www.fujitsu.com/jp/group/fsas/about/resources/security/2024/0617.html - () https://www.fujitsu.com/jp/group/fsas/about/resources/security/2024/0617.html -

13 Aug 2024, 20:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.6
CWE CWE-36

20 Jun 2024, 12:44

Type Values Removed Values Added
Summary
  • (es) Existe una vulnerabilidad de path traversal absoluta en ID Link Manager y FUJITSU Software TIME CREATOR. Si se explota esta vulnerabilidad, un atacante remoto no autenticado puede recuperar el contenido del archivo, incluida la información confidencial del servidor.

18 Jun 2024, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-18 06:15

Updated : 2024-11-21 09:17


NVD link : CVE-2024-33620

Mitre link : CVE-2024-33620

CVE.ORG link : CVE-2024-33620


JSON object : View

Products Affected

No product.

CWE
CWE-36

Absolute Path Traversal