PT-2024-32312 · Openc3 · Openc3 Cosmos

P-

·

Published

2024-10-02

·

Updated

2024-11-18

·

CVE-2024-46977

CVSS v4.0

7.1

High

VectorAV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions OpenC3 COSMOS versions prior to 5.19.0
Description A path traversal vulnerability inside of LocalMode's open local file method allows an authenticated user with adequate permissions to download any .txt via the ScreensController#show on the web server COSMOS is running on, depending on the file permissions. This issue may lead to Information Disclosure.
Recommendations For versions prior to 5.19.0, update to version 5.19.0 to resolve the issue. As a temporary workaround, consider restricting access to the ScreensController#show endpoint or limiting the permissions of authenticated users to minimize the risk of exploitation.

Exploit

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2024-46977
GHSA-8JXR-MCCC-MWG8
PYSEC-2024-101

Affected Products

Openc3 Cosmos