ZeroHour

CVE-2024-3318

CVSS 3.1
4.2 medium
EPSS
<1%p30
Published
()
Modified
Description

A file path traversal vulnerability was identified in the DelimitedFileConnector Cloud Connector that allowed an authenticated administrator to set arbitrary connector attributes, including the “file“ attribute, which in turn allowed the user to access files uploaded for other sources.

Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.