Home

Description

A low privileged remote attacker can overwrite an arbitrary file on the filesystem leading to a DoS and data loss.

PUBLISHED Reserved 2024-07-25 | Published 2024-11-18 | Updated 2025-08-27 | Assigner CERTVDE




HIGH: 8.1CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H

Problem types

CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Product status

Default status
unaffected

0.0.0 (semver)
affected

Default status
unaffected

0.0.0 (semver)
affected

Default status
unaffected

0.0.0 (semver)
affected

Default status
unaffected

0.0.0 (semver)
affected

Default status
unaffected

0.0.0 (semver)
affected

Default status
unaffected

0.0.0 (semver)
affected

Default status
unaffected

0.0.0 (semver)
affected

Default status
unaffected

0.0.0 (semver)
affected

Default status
unaffected

0.0.0 (semver)
affected

Default status
unaffected

0.0.0 (semver)
affected

Default status
unaffected

0.0.0 (semver)
affected

Default status
unaffected

0.0.0 (semver)
affected

Default status
unaffected

0.0.0 (semver)
affected

Credits

Diego Giubertoni finder

Nozomi Networks reporter

References

cert.vde.com/en/advisories/VDE-2024-047

cve.org (CVE-2024-41971)

nvd.nist.gov (CVE-2024-41971)

Download JSON