PT-2024-15997 · Shanxi Diankeyun Technology · Noderp

Glzjin

·

Published

2024-01-29

·

Updated

2024-05-17

·

CVE-2024-1005

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Shanxi Diankeyun Technology NODERP versions up to 6.0.2
Description A critical issue has been found in the software, affecting unknown code of the file /runtime/log. This allows for files or directories to be made accessible. The attack can be initiated remotely. The issue has been publicly disclosed and may be exploited.
Recommendations For versions up to 6.0.2, at the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

Files Accessible to External Parties

Weakness Enumeration

Related Identifiers

CVE-2024-1005

Affected Products

Noderp