PT-2024-36594 · Casdoor · Casdoor
Xbnwa
·
Published
2024-06-02
·
Updated
2024-06-03
·
CVE-2024-5587
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Casdoor versions up to 1.335.0
Description
A problematic issue has been found in the Configuration File Handler component, specifically in an unknown function of the file /conf/app.conf. This issue allows for files or directories to be made accessible. The attack can be launched remotely. The details of this issue have been publicly disclosed.
Recommendations
For versions up to 1.335.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Files Accessible to External Parties
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Casdoor