CVE-2024-33620 Vulnerability Details

  /     /     /  

CVE-2024-33620 Metadata Quick Info

CVE Published: 18/06/2024 | CVE Updated: 13/08/2024 | CVE Year: 2024
Source: jpcert | Vendor: Fsas Technologies Inc. | Product: FUJITSU Business Application ID Link Manager II
Status : PUBLISHED

CVE-2024-33620 Description

Absolute path traversal vulnerability exists in ID Link Manager and FUJITSU Software TIME CREATOR. If this vulnerability is exploited, the file contents including sensitive information on the server may be retrieved by an unauthenticated remote attacker.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: Absolute path traversal
Source: Fsas Technologies Inc.

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).