PT-2024-17647 · Sepidz · Sepidzdigitalmenu

Qf5252

·

Published

2024-02-06

·

Updated

2024-05-17

·

CVE-2024-1255

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions sepidz SepidzDigitalMenu versions up to 7.1.0728.1
Description A vulnerability has been found in sepidz SepidzDigitalMenu, classified as problematic. This issue affects unknown code of the file /Waiters, leading to information disclosure. The attack can be initiated remotely. The vendor was contacted early about this disclosure but did not respond in any way.
Recommendations For versions up to 7.1.0728.1, consider restricting access to the /Waiters file to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2024-1255

Affected Products

Sepidzdigitalmenu