PT-2024-20662 · Gaia · Gaia

Published

2024-11-07

·

Updated

2025-08-26

·

CVE-2024-24914

CVSS v3.1

8.0

High

VectorAV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Gaia (affected versions not specified)
Description The issue allows authenticated Gaia users to inject code or commands by global variables through special HTTP requests. A security fix is available to mitigate this issue.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2024-24914

Affected Products

Gaia