ZeroHour

CVE-2024-8778

CVSS 3.1
6.5 medium
EPSS
<1%p47
Published
()
Modified
Description

OMFLOW from The SYSCOM Group does not properly validate user input of the download functionality, allowing remote attackers with regular privileges to read arbitrary system files.

Vendors
syscomgo
Products
omflow
Weakness
CWE-36, CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.