HIGH🇵🇱 Wersja polska

CVE-2024-50334

CVSS 8.7v4.0pub. 2024-10-29upd. 2024-11-08

Scoold is a Q&A and a knowledge sharing platform for teams. A semicolon path injection vulnerability was found on the /api;/config endpoint. By appending a semicolon in the URL, attackers can bypass authentication and gain unauthorised access to sensitive configuration data. Furthermore, PUT requests on the /api;/config endpoint while setting the Content-Type: application/hocon header allow unauthenticated attackers to file reading via HOCON file inclusion. This allows attackers to retrieve sensitive information such as configuration files from the server, which can be leveraged for further exploitation. The vulnerability has been fixed in Scoold 1.64.0. A workaround would be to disable the Scoold API with scoold.api_enabled = false.

CVSS Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
  • Erudika Scoold

    APP
    Erudika
    ≤ 1.64.0
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
Auth Bypass
CWE
References

Related vulnerabilities

CVE-2022-1543HIGH8.8same product

Improper handling of Length parameter in GitHub repository erudika/scoold prior to 1.49.4. When the text size ...

CVE-2026-39354MEDIUM6.5same product

Scoold to platforma Q&A i dzielenia się wiedzą dla zespołów. Przed wersją 1.66.2 uwierzytelniony błąd autoryza...

CVE-2026-34832MEDIUM6.5same product

Scoold to platforma Q&A i dzielenia się wiedzą dla zespołów. W wersjach przed 1.66.1 Scoold zawiera błąd autor...

CVE-2021-46372MEDIUM5.4same product

Scoold 1.47.2 is a Q&A/knowledge base platform written in Java. When writing a Q&A, the markdown editor is vul...

CVE-2022-1848MEDIUM5.3same vendor

Business Logic Errors in GitHub repository erudika/para prior to 1.45.11.