PT-2024-39981 · Ragic · Enterprise Cloud Database

Published

2024-10-15

·

Updated

2024-10-19

·

CVE-2024-9983

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Enterprise Cloud Database from Ragic (affected versions not specified)
Description The Enterprise Cloud Database from Ragic does not properly validate a specific page parameter, allowing unauthenticated remote attackers to exploit this vulnerability to read arbitrary system files. This issue can be exploited to potentially read system files remotely.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Relative Path Traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-9983

Affected Products

Enterprise Cloud Database