Today > vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-38449

June 17, 2024, 7:15 p.m.

Product(s) Impacted

KasmVNC

  • 1.3.1.230e50f7b89663316c70de7b0e3db6f6b9340489 and possibly earlier versions

Description

A Directory Traversal vulnerability in KasmVNC 1.3.1.230e50f7b89663316c70de7b0e3db6f6b9340489 and possibly earlier versions allows remote authenticated attackers to browse parent directories and read the content of files outside the scope of the application.

Weaknesses

Date

Published: June 17, 2024, 7:15 p.m.

Last Modified: June 17, 2024, 7:15 p.m.

Status : Received

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

cve@mitre.org

References