CVE-2024-42499
CVSS 3.0 Score 5.3 of 10 (medium)
Details
Published Nov 15, 2024
CWE ID 22
Summary
CVE-2024-42499 is a path traversal vulnerability affecting FitNesse versions before 20241026. This issue allows attackers to determine the existence of files and potentially obtain partial file contents by manipulating pathnames, posing a threat to system security. The vulnerability could be exploited to gain unauthorized access to sensitive information. Users are advised to upgrade to the latest FitNesse release to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.