CVE-2024-52449

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Nov 20, 2024
Updated: Nov 21, 2024
CWE ID 22

Summary

CVE-2024-52449 is a newly disclosed path traversal vulnerability affecting the Navneil Naicer Bootscraper software. This issue permits an attacker to bypass restrictions and include PHP files located outside of the intended directory, leading to potential code execution and information disclosure. Affected versions of Bootscraper range from n/a to 2.1.0. System administrators are advised to apply the forthcoming patch or upgrade to a secure version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share