Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-50536 | Path Traversal vulnerability in the eSignaViewer component in eSigna product versions 1.0 to 1.5 on all platforms allow an unauthenticated attacker to access arbitrary files in the document system via manipulation of file paths and object identifiers. |
Solution
Users should immediately upgrade to the corresponding fixed version to eliminate these vulnerabilities and protect sensitive data from unauthorized access.
Workaround
No workaround given by the vendor.
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 20 May 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-639 | |
| Metrics |
cvssV3_1
|
Thu, 15 May 2025 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Path Traversal and Insecure Direct Object Reference (IDOR) vulnerabilities in the eSignaViewer component in eSigna product versions 1.0 to 1.5 on all platforms allow an unauthenticated attacker to access arbitrary files in the document system via manipulation of file paths and object identifiers. | Path Traversal vulnerability in the eSignaViewer component in eSigna product versions 1.0 to 1.5 on all platforms allow an unauthenticated attacker to access arbitrary files in the document system via manipulation of file paths and object identifiers. |
| Title | Path Traversal and IDOR Vulnerabilities in eSignaViewer Allow Unauthorized File Access | Path Traversal vulnerability in eSignaViewer Allow Unauthorized File Access |
Fri, 20 Dec 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-639 | |
| Metrics |
cvssV3_1
|
Fri, 20 Dec 2024 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Path Traversal and Insecure Direct Object Reference (IDOR) vulnerabilities in the eSignaViewer component in eSigna product versions 1.0 to 1.5 on all platforms allow an unauthenticated attacker to access arbitrary files in the document system via manipulation of file paths and object identifiers. | |
| Title | Path Traversal and IDOR Vulnerabilities in eSignaViewer Allow Unauthorized File Access | |
| Weaknesses | CWE-20 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2025-05-20T14:36:56.171Z
Reserved: 2024-12-02T10:39:36.887Z
Link: CVE-2024-12014
Updated: 2024-12-20T15:48:53.047Z
Status : Awaiting Analysis
Published: 2024-12-20T13:15:19.430
Modified: 2025-05-20T15:16:02.647
Link: CVE-2024-12014
No data.
OpenCVE Enrichment
No data.
EUVD