CVE-2024-56213

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Dec 31, 2024
CWE ID 35

Summary

CVE-2024-56213 is a newly disclosed path traversal vulnerability that affects Themewinter Eventin. The issue permits an attacker to traverse directories outside of the intended path, potentially gaining unauthorized access to sensitive files. This vulnerability exists in Themewinter Eventin versions from n/a to 4.0.7, posing a risk for those using the affected software. Attackers could exploit this flaw to steal or modify confidential data, undermining the security of the affected system. Organizations and individuals using Themewinter Eventin are advised to update to a patched version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share