CVE-2024-9301
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Sep 27, 2024
Updated: Oct 7, 2024
CWE ID 22
Summary
CVE-2024-9301 is a newly disclosed vulnerability affecting E2Nest, an open-source email clustering and queuing system. The issue involves a path traversal weakness, which can be exploited by attackers to gain unauthorized access to sensitive files or execute malicious code. This vulnerability exists in E2Nest versions prior to commit 8a41948e553c89c56b14410c6ed395e9cfb9250a. Successful exploitation may result in data breaches or system compromise. System administrators are advised to update their E2Nest installations as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.