PT-2024-15997 · Shanxi Diankeyun Technology · Noderp

·

CVE-2024-1005

·

Published

2024-01-29

·

Updated

2024-05-17

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Shanxi Diankeyun Technology NODERP versions up to 6.0.2
Description A critical issue has been found in the software, affecting unknown code of the file /runtime/log. This allows for files or directories to be made accessible. The attack can be initiated remotely. The issue has been publicly disclosed and may be exploited.
Recommendations For versions up to 6.0.2, at the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

Files Accessible to External Parties

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-1005

Affected Products

Noderp