A path traversal vulnerability exists in the Java version of CData Sync < 23.4.8843 when running using the embedded Jetty server, which could allow an unauthenticated remote attacker to gain access to sensitive information and perform limited actions.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.tenable.com/security/research/tra-2024-09 |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: tenable
Published:
Updated: 2024-08-02T01:59:49.914Z
Reserved: 2024-04-05T13:59:17.191Z
Link: CVE-2024-31851
Updated: 2024-07-31T19:40:40.036Z
Status : Awaiting Analysis
Published: 2024-04-05T18:15:09.953
Modified: 2024-11-21T09:14:01.463
Link: CVE-2024-31851
No data.
OpenCVE Enrichment
No data.
Weaknesses