PT-2024-4727 · Microsoft · Net Core

Published

2024-05-15

·

Updated

2024-05-15

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:S/C:P/I:C/A:N
Name of the Vulnerable Software and Affected Versions: Сервис оправдательных документов (affected versions not specified)
Description: The issue is related to incorrect restriction of directory path names in the .NET Core component of the "Сервис оправдательных документов" software. Exploitation of this issue may allow a remote attacker to gain read and write access to files.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-05246

Affected Products

Net Core