LOW🇬🇧 English

CVE-2024-1192

CVSS 3.3v3.1pub. 2024-02-29upd. 2025-01-08

W oprogramowaniu South River WebDrive 18.00.5057 odkryto podatność w komponencie New Secure WebDAV, która umożliwia DoS (denial of service). Do ataku wymagany jest dostęp lokalny, a exploit został już ujawniony publicznie. Vendor nie odpowiedział na powiadomienie o luce.

Pokaż oryginał (EN)

A vulnerability was found in South River WebDrive 18.00.5057. It has been declared as problematic. This vulnerability affects unknown code of the component New Secure WebDAV. The manipulation leads to denial of service. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. VDB-252682 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
  • Southrivertech Webdrive

    APP
    Southrivertech
    18.00.5057
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
Tagi
DoS
CWE
Referencje

Powiązane podatności

CVE-2018-25233MEDIUM6.9ten sam produkt

WebDrive 18.00.5057 zawiera podatność denial of service, która pozwala lokalnym atakującym na zawieszenie apli...

CVE-2023-45685CRITICAL9.1PL ✓ten sam vendor

Path traversal przy rozpakowywaniu ZIP w Titan MFT i Titan SFTP Server

CVE-2022-34005CRITICAL9.8PL ✓ten sam vendor

RCE przez zakodowane hasło konta SA w TitanFTP NextGen

CVE-2023-45686HIGH7.2ten sam vendor

Insufficient path validation when writing a file via WebDAV in South River Technologies' Titan MFT and Titan S...

CVE-2023-45687HIGH8.8ten sam vendor

A session fixation vulnerability in South River Technologies' Titan MFT and Titan SFTP servers on Linux and Wi...