CVE-2024-42499

CVSS 3.0 Score 5.3 of 10 (medium)

Details

Published Nov 15, 2024
CWE ID 22

Summary

CVE-2024-42499 is a path traversal vulnerability affecting FitNesse versions before 20241026. This issue allows attackers to determine the existence of files and potentially obtain partial file contents by manipulating pathnames, posing a threat to system security. The vulnerability could be exploited to gain unauthorized access to sensitive information. Users are advised to upgrade to the latest FitNesse release to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share