PT-2024-25141 · Unknown · Delimitedfileconnector Cloud Connector
Published
2024-05-15
·
Updated
2024-05-15
·
CVE-2024-3318
CVSS v3.1
4.2
Medium
| Vector | AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
DelimitedFileConnector Cloud Connector (affected versions not specified)
Description
A file path traversal issue was identified in the DelimitedFileConnector Cloud Connector. This allowed an authenticated administrator to set arbitrary connector attributes, including the
file attribute. As a result, the user could access files uploaded for other sources.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Delimitedfileconnector Cloud Connector