Vulnerability CVE-2024-46898


Published: 2024-10-15

Description:
SHIRASAGI prior to v1.19.1 processes URLs in HTTP requests improperly, resulting in a path traversal vulnerability. If this vulnerability is exploited, arbitrary files on the server may be retrieved when processing crafted HTTP requests.

 References:
https://github.com/shirasagi/shirasagi/commit/5ac4685d7e4330f949f13219069107fc5d768934
https://www.ss-proj.org/
https://jvn.jp/en/jp/JVN58721679/

Copyright 2024, cxsecurity.com

 

Back to Top