MEDIUM
ABCD ABCD2 show_image.php path traversal
Published Sep 4, 2024
5.3
MEDIUMCVSS 4.0
EPSS 0.65%
Description
A vulnerability classified as problematic has been found in ABCD ABCD2 up to 2.2.0-beta-1. This affects an unknown part of the file /common/show_image.php. The manipulation of the argument image leads to path traversal: '../filedir'. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected products
-
- Version 2.2.0-beta-1StatusaffectedConstraints-
- Version
OR
- 2.2.0
- 2.2.0
-
- Version 0StatusaffectedConstraints<2.2.0-beta-1
- Version
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (2)
References (3)
- https://github.com/peritocibernetico/ABCD_Vulnerabilities exploitNot Applicable
- https://vuldb.com/?ctiid.276489 signaturepermissions-requiredPermissions Required
- https://vuldb.com/?id.276489 vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry
| Link | Providers | Tags |
|---|---|---|
| https://github.com/peritocibernetico/ABCD_Vulnerabilities | exploitNot Applicable | |
| https://vuldb.com/?ctiid.276489 | signaturepermissions-requiredPermissions Required | |
| https://vuldb.com/?id.276489 | vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Sep 4, 2024
Updated Sep 4, 2024
Reserved Sep 4, 2024
Link CVE-2024-8409
CISA Vulnrichment
Updated Sep 4, 2024