Vulnerability in Delinea Centrify PAS v. 21.3 and possibly others. The application is prone to the path traversal vulnerability allowing listing of arbitrary directory outside the root directory of the web application. Versions 23.1-HF7 and on have the patch.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-47009 | Vulnerability in Delinea Centrify PAS v. 21.3 and possibly others. The application is prone to the path traversal vulnerability allowing listing of arbitrary directory outside the root directory of the web application. Versions 23.1-HF7 and on have the patch. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 29 Aug 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Delinea
Delinea privileged Access Service |
|
| Weaknesses | CWE-22 | |
| CPEs | cpe:2.3:a:delinea:privileged_access_service:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Delinea
Delinea privileged Access Service |
Status: PUBLISHED
Assigner: Kaspersky
Published:
Updated: 2024-08-01T21:25:03.145Z
Reserved: 2024-06-11T15:12:47.502Z
Link: CVE-2024-5866
Updated: 2024-08-01T21:25:03.145Z
Status : Modified
Published: 2024-07-02T16:15:05.900
Modified: 2024-11-21T09:48:30.210
Link: CVE-2024-5866
No data.
OpenCVE Enrichment
No data.
EUVD