PT-2024-35761 · Unknown · Favorites-Web

Published

2024-12-05

·

Updated

2024-12-11

·

CVE-2024-53490

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Favorites-web version 1.3.0
Description The issue is related to a directory traversal vulnerability in the SecurityFilter.java file. This vulnerability could potentially allow unauthorized access.
Recommendations For Favorites-web version 1.3.0, consider restricting access to the SecurityFilter.java file as a temporary workaround until a patch is available. Additionally, review access controls to minimize the risk of exploitation.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2024-53490

Affected Products

Favorites-Web