CVE-2024-52449
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Nov 20, 2024
Updated: Nov 21, 2024
CWE ID 22
Summary
CVE-2024-52449 is a newly disclosed Path Traversal vulnerability that affects the Navneil Naicer Bootscraper software. The flaw, which enables PHP Local File Inclusion, arises due to an improper limitation of a pathname. This issue allows an attacker to potentially gain unauthorized access to restricted directories, posing a significant security risk. The vulnerability can be exploited in Bootscraper versions from n/a to 2.1.0. System administrators are advised to apply the necessary patches or updates as soon as possible to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share