CVE-2024-46938

Sept. 15, 2024, 10:15 p.m.

Received
CVE has been recently published to the CVE List and has been received by the NVD.

Products

Sitecore Experience Platform

  • 8.0 Initial Release
  • through 10.4 Initial Release

Sitecore Experience Manager

  • 8.0 Initial Release
  • through 10.4 Initial Release

Sitecore Experience Commerce

  • 8.0 Initial Release
  • through 10.4 Initial Release

Source

cve@mitre.org

Tags

CVE-2024-46938 details

Published : Sept. 15, 2024, 10:15 p.m.
Last Modified : Sept. 15, 2024, 10:15 p.m.

Description

An issue was discovered in Sitecore Experience Platform (XP), Experience Manager (XM), and Experience Commerce (XC) 8.0 Initial Release through 10.4 Initial Release. An unauthenticated attacker can read arbitrary files.

CVSS Score

1 2 3 4 5 6 7 8 9 10

Weakness

Weakness Name Description
This website uses the NVD API, but is not approved or certified by it.