PT-2024-32089 · Enms · Enms

Andrea Pessione

+1

·

Published

2024-09-20

·

Updated

2024-09-26

·

CVE-2024-46644

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions eNMS versions 4.4.0 through 4.7.1
Description The issue is related to Directory Traversal via edit file. This allows unauthorized access to sensitive files and directories.
Recommendations For versions 4.4.0 through 4.7.1, consider restricting access to the edit file functionality until a patch is available.

Exploit

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2024-46644

Affected Products

Enms