Логотип exploitDog
bind:CVE-2024-10648
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-10648

Количество 2

Количество 2

nvd логотип

CVE-2024-10648

11 месяцев назад

A path traversal vulnerability exists in the Gradio Audio component of gradio-app/gradio, as of version git 98cbcae. This vulnerability allows an attacker to control the format of the audio file, leading to arbitrary file content deletion. By manipulating the output format, an attacker can reset any file to an empty file, causing a denial of service (DOS) on the server.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-pgfv-gvc5-prfg

11 месяцев назад

Gradio Vulnerable to Arbitrary File Deletion

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-10648

A path traversal vulnerability exists in the Gradio Audio component of gradio-app/gradio, as of version git 98cbcae. This vulnerability allows an attacker to control the format of the audio file, leading to arbitrary file content deletion. By manipulating the output format, an attacker can reset any file to an empty file, causing a denial of service (DOS) on the server.

CVSS3: 8.2
0%
Низкий
11 месяцев назад
github логотип
GHSA-pgfv-gvc5-prfg

Gradio Vulnerable to Arbitrary File Deletion

CVSS3: 8.2
0%
Низкий
11 месяцев назад

Уязвимостей на страницу