ZeroHour

CVE-2024-23946

CVSS 3.1
5.3 medium
EPSS
3%p87
Published
()
Modified
Description

Possible path traversal in Apache OFBiz allowing file inclusion. Users are recommended to upgrade to version 18.12.12, that fixes the issue.

Vendors
apache
Products
ofbiz
Weakness
CWE-22, CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.