CVE-2024-54453 – Kurmi Provisioning Suite Path Traversal Vulnerability

CVE ID : CVE-2024-54453

Published : Dec. 27, 2024, 8:15 p.m. | 1 hour, 1 minute ago

Description : An issue was discovered in Kurmi Provisioning Suite before 7.9.0.35, 7.10.x through 7.10.0.18, and 7.11.x through 7.11.0.15. A path traversal vulnerability in the DocServlet servlet allows remote attackers to retrieve any file from the Kurmi web application installation folder, e.g., files such as the obfuscated and/or compiled Kurmi source code.

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE-2024-54453 – Kurmi Provisioning Suite Path Traversal Vulnerability