PT-2024-15801 · Softwarex · Softwarex

Published

2024-02-27

·

Updated

2025-03-27

·

CVE-2024-0763

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions SoftwareX (affected versions not specified)
Description The issue allows any user to delete an arbitrary folder recursively on a remote server due to bad input sanitization, leading to path traversal. The attacker would need access to the server at some privilege level since the endpoint is protected and requires authorization.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-0763

Affected Products

Softwarex