Podatność CVE-2024-9922


Publikacja: 2024-10-14

Opis:
The Team+ from TEAMPLUS TECHNOLOGY does not properly validate a specific page parameter, allowing unauthenticated remote attackers to exploit this vulnerability to read arbitrary system files.

Typ:

CWE-23

(Relative Path Traversal)

 Referencje:
https://www.twcert.org.tw/tw/cp-132-8126-5d9d2-1.html
https://www.twcert.org.tw/en/cp-139-8127-41699-2.html

Copyright 2024, cxsecurity.com

 

Back to Top