Логотип exploitDog
bind:CVE-2024-8248
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-8248

Количество 2

Количество 2

nvd логотип

CVE-2024-8248

11 месяцев назад

A vulnerability in the normalizePath function in mintplex-labs/anything-llm version git 296f041 allows for path traversal, leading to arbitrary file read and write in the storage directory. This can result in privilege escalation from manager to admin. The issue is fixed in version 1.2.2.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-mqp7-6vh9-99r6

11 месяцев назад

A vulnerability in the normalizePath function in mintplex-labs/anything-llm version git 296f041 allows for path traversal, leading to arbitrary file read and write in the storage directory. This can result in privilege escalation from manager to admin. The issue is fixed in version 1.2.2.

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-8248

A vulnerability in the normalizePath function in mintplex-labs/anything-llm version git 296f041 allows for path traversal, leading to arbitrary file read and write in the storage directory. This can result in privilege escalation from manager to admin. The issue is fixed in version 1.2.2.

CVSS3: 7.2
0%
Низкий
11 месяцев назад
github логотип
GHSA-mqp7-6vh9-99r6

A vulnerability in the normalizePath function in mintplex-labs/anything-llm version git 296f041 allows for path traversal, leading to arbitrary file read and write in the storage directory. This can result in privilege escalation from manager to admin. The issue is fixed in version 1.2.2.

CVSS3: 7.2
0%
Низкий
11 месяцев назад

Уязвимостей на страницу