ZeroHour

CVE-2024-41511

PoC
CVSS 3.1
3.9 low
EPSS
<1%p58
Published
()
Modified
Description

A Path Traversal (Local File Inclusion) vulnerability in "BinaryFileRedirector.ashx" in CADClick v1.11.0 and before allows remote attackers to retrieve arbitrary local files via the "path" parameter.

Vendors
4pace
Products
cadclick
Weakness
CWE-22
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.