CVE-2024-52449

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Nov 20, 2024
Updated: Nov 21, 2024
CWE ID 22

Summary

CVE-2024-52449 is a newly disclosed Path Traversal vulnerability that affects the Navneil Naicer Bootscraper software. The flaw, which enables PHP Local File Inclusion, arises due to an improper limitation of a pathname. This issue allows an attacker to potentially gain unauthorized access to restricted directories, posing a significant security risk. The vulnerability can be exploited in Bootscraper versions from n/a to 2.1.0. System administrators are advised to apply the necessary patches or updates as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share