PT-2024-37375 · Lollms · Lollms

Published

2024-06-27

·

Updated

2024-06-27

·

CVE-2024-6085

CVSS v3.1

8.6

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
Name of the Vulnerable Software and Affected Versions: lollms package version v9.6
Description: A path traversal issue exists due to the ability to perform an unauthenticated root folder settings change. Although the read file endpoint is protected against path traversals, this protection can be bypassed by changing the root folder to '/'. This allows attackers to read arbitrary files on the system. Additionally, the output folders can be changed to write arbitrary audio files to any location on the system.
Recommendations: For lollms package version v9.6, consider restricting access to the root folder settings to prevent unauthenticated changes, and limit the ability to modify output folders to authorized users only. As a temporary workaround, consider disabling the ability to change the root folder and output folders until a patch is available.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-6085
GHSA-9CHM-M6X2-6FVC

Affected Products

Lollms