Vulnerability in Delinea Centrify PAS v. 21.3 and possibly others. The application is prone to the path traversal vulnerability allowing arbitrary files reading outside the web publish directory. Versions 23.1-HF7 and on have the patch.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-47008 Vulnerability in Delinea Centrify PAS v. 21.3 and possibly others. The application is prone to the path traversal vulnerability allowing arbitrary files reading outside the web publish directory. Versions 23.1-HF7 and on have the patch.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Thu, 29 Aug 2024 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Delinea
Delinea privileged Access Service
Weaknesses CWE-22
CPEs cpe:2.3:a:delinea:privileged_access_service:*:*:*:*:*:*:*:*
Vendors & Products Delinea
Delinea privileged Access Service

cve-icon MITRE

Status: PUBLISHED

Assigner: Kaspersky

Published:

Updated: 2024-08-01T21:25:03.196Z

Reserved: 2024-06-11T15:11:40.192Z

Link: CVE-2024-5865

cve-icon Vulnrichment

Updated: 2024-08-01T21:25:03.196Z

cve-icon NVD

Status : Modified

Published: 2024-07-02T16:15:05.667

Modified: 2024-11-21T09:48:30.057

Link: CVE-2024-5865

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.