Description
StoneFly Storage Concentrator (SC and SCVM) before 8.0.4.26 allows Directory Traversal by authenticated users. Using a crafted path parameter with the Online Help facility can expose sensitive system information.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-29805 | StoneFly Storage Concentrator (SC and SCVM) before 8.0.4.26 allows Directory Traversal by authenticated users. Using a crafted path parameter with the Online Help facility can expose sensitive system information. |
References
History
Tue, 10 Sep 2024 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Stonefly
Stonefly storage Concentrator |
|
| Weaknesses | CWE-22 | |
| CPEs | cpe:2.3:a:stonefly:storage_concentrator:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Stonefly
Stonefly storage Concentrator |
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-14T15:00:18.796Z
Reserved: 2024-04-07T00:00:00.000Z
Link: CVE-2024-31947
Updated: 2024-08-02T01:59:50.619Z
Status : Modified
Published: 2024-07-12T23:15:10.000
Modified: 2025-03-14T15:15:40.603
Link: CVE-2024-31947
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD