Incorrectly limiting the path to a restricted directory vulnerability in Badger Meter Monitool that affects versions up to 4.6.3 and earlier. This vulnerability allows an authenticated attacker to retrieve any file from the device using the download-file functionality.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: INCIBE
Published: 2024-03-12T15:28:31.586Z
Updated: 2024-08-02T19:52:01.818Z
Reserved: 2024-02-07T10:22:55.418Z
Link: CVE-2024-1303
Vulnrichment
Updated: 2024-08-01T18:33:25.568Z
NVD
Status : Awaiting Analysis
Published: 2024-03-12T16:15:07.590
Modified: 2024-03-12T17:46:17.273
Link: CVE-2024-1303
Redhat
No data.