PT-2024-37632 · Unknown · Datadiodex

Abdülhamit Kurtatay

+1

·

Published

2024-09-06

·

Updated

2024-09-12

·

CVE-2024-6445

CVSS v4.0
10
VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H

Name of the Vulnerable Software and Affected Versions:

DataDiodeX versions 3.0.0 through 3.1.7

Description:

The issue is related to an Improper Limitation of a Pathname to a Restricted Directory, also known as a 'Path Traversal' vulnerability. This vulnerability allows Path Traversal in DataDiodeX.

Recommendations:

For versions 3.0.0 through 3.1.7, update to version 3.1.7 or later to resolve the issue.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2024-6445

Affected Products

Datadiodex