PT-2024-15308 · Unknown · Filesystemprovider.Java

Published

2024-02-01

·

Updated

2025-08-26

·

CVE-2024-0032

CVSS v3.1

6.8

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions FileSystemProvider.java (affected versions not specified)
Description The issue is related to improper input validation in the queryChildDocuments function of FileSystemProvider.java. This could allow access to directories that should be hidden, potentially leading to local escalation of privilege. User interaction is required for exploitation, and user execution privileges are needed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ASB-A-283962634
CVE-2024-0032

Affected Products

Filesystemprovider.Java