CVE-2024-50626

An issue was discovered in Digi ConnectPort LTS before 1.4.12. A Directory Traversal vulnerability exists in WebFS. This allows an attacker on the local area network to manipulate URLs to include traversal sequences, potentially leading to unauthorized access to data.
Configurations

No configuration.

History

12 Dec 2024, 02:06

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
CWE CWE-22
Summary
  • (es) Se descubrió un problema en Digi ConnectPort LTS anterior a la versión 1.4.12. Existe una vulnerabilidad de Directory Traversal en WebFS. Esto permite que un atacante en la red de área local manipule las URL para incluir secuencias de recorrido, lo que puede provocar un acceso no autorizado a los datos.

09 Dec 2024, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-09 22:15

Updated : 2024-12-12 02:06


NVD link : CVE-2024-50626

Mitre link : CVE-2024-50626

CVE.ORG link : CVE-2024-50626


JSON object : View

Products Affected

No product.

CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')