PT-2024-17280 · Plextrac · Plextrac

·

CVE-2024-11833

·

Published

2024-12-13

·

Updated

2024-12-13

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions PlexTrac versions 1.61.3 through 2.8.1
Description The issue is related to a Path Traversal vulnerability, which allows arbitrary file writes due to improper limitation of a pathname to a restricted directory. This enables writing files anywhere, posing a significant risk.
Recommendations For PlexTrac versions 1.61.3 through 2.8.1, update to a version that includes the fix for this issue. As a temporary workaround, consider restricting access to sensitive directories to minimize the risk of exploitation.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-11833

Affected Products

Plextrac