Description
Incorrectly limiting the path to a restricted directory vulnerability in Badger Meter Monitool that affects versions up to 4.6.3 and earlier. This vulnerability allows an authenticated attacker to retrieve any file from the device using the download-file functionality.
No analysis available yet.
Remediation
Vendor Solution
The vulnerabilities have been resolved in versions 4.7 and later.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-17063 | Incorrectly limiting the path to a restricted directory vulnerability in Badger Meter Monitool that affects versions up to 4.6.3 and earlier. This vulnerability allows an authenticated attacker to retrieve any file from the device using the download-file functionality. |
References
History
Wed, 26 Feb 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Badgermeter
Badgermeter monitool |
|
| CPEs | cpe:2.3:a:badgermeter:monitool:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Badgermeter
Badgermeter monitool |
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-02T19:52:01.818Z
Reserved: 2024-02-07T10:22:55.418Z
Link: CVE-2024-1303
Updated: 2024-08-01T18:33:25.568Z
Status : Analyzed
Published: 2024-03-12T16:15:07.590
Modified: 2025-04-10T19:18:20.000
Link: CVE-2024-1303
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD