PT-2025-9028 · Xiq-Se · Xiq-Se

Published

2025-02-27

·

Updated

2025-07-11

·

CVE-2024-38292

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions XIQ-SE versions prior to 24.2.11
Description The issue is due to a missing access control check, allowing a path traversal that may lead to privilege escalation.
Recommendations For versions prior to 24.2.11, update to version 24.2.11 or later to resolve the issue.

Fix

LPE

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2024-38292

Affected Products

Xiq-Se