PT-2024-14224 · Allegra · Allegra

Published

2024-02-09

·

Updated

2025-01-03

·

CVE-2023-51648

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Allegra version 7.5.0 Build 29
Description This issue allows remote attackers to disclose sensitive information on affected installations of Allegra. Although authentication is required to exploit this issue, the product implements a registration mechanism that can be used to create a new user with a sufficient privilege level. The specific flaw exists within the getFileContentAsString method, resulting from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this issue to disclose stored credentials, leading to further compromise.
Recommendations For Allegra version 7.5.0 Build 29, upgrade to a newer version to mitigate the risk of sensitive data exposure. As a temporary workaround, consider restricting access to the getFileContentAsString method until a patch is available.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2023-51648
ZDI-24-099

Affected Products

Allegra