Логотип exploitDog
bind:CVE-2024-8958
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-8958

Количество 2

Количество 2

nvd логотип

CVE-2024-8958

11 месяцев назад

In composiohq/composio version 0.4.3, there is an unrestricted file write and read vulnerability in the filetools actions. Due to improper validation of file paths, an attacker can read and write files anywhere on the server, potentially leading to privilege escalation or remote code execution.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-8fw3-c8jq-g74q

11 месяцев назад

In composiohq/composio version 0.4.3, there is an unrestricted file write and read vulnerability in the filetools actions. Due to improper validation of file paths, an attacker can read and write files anywhere on the server, potentially leading to privilege escalation or remote code execution.

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-8958

In composiohq/composio version 0.4.3, there is an unrestricted file write and read vulnerability in the filetools actions. Due to improper validation of file paths, an attacker can read and write files anywhere on the server, potentially leading to privilege escalation or remote code execution.

CVSS3: 9.8
1%
Низкий
11 месяцев назад
github логотип
GHSA-8fw3-c8jq-g74q

In composiohq/composio version 0.4.3, there is an unrestricted file write and read vulnerability in the filetools actions. Due to improper validation of file paths, an attacker can read and write files anywhere on the server, potentially leading to privilege escalation or remote code execution.

CVSS3: 7.2
1%
Низкий
11 месяцев назад

Уязвимостей на страницу