CVE-2024-33620

high

Description

Absolute path traversal vulnerability exists in ID Link Manager and FUJITSU Software TIME CREATOR. If this vulnerability is exploited, the file contents including sensitive information on the server may be retrieved by an unauthenticated remote attacker.

References

https://www.fujitsu.com/jp/group/fsas/about/resources/security/2024/0617.html

https://jvn.jp/en/jp/JVN65171386/

Details

Source: Mitre, NVD

Published: 2024-06-18

Updated: 2024-08-13

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N

Severity: Medium

CVSS v3

Base Score: 8.6

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N

Severity: High