← Back to CVE List

CVE-2024-8941

Published: 2024-09-25T01:15Z
Last Modified: 2024-09-30T19:45Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Path traversal vulnerability in Scriptcase version 9.4.019, in /scriptcase/devel/compat/nm_edit_php_edit.php (in the “subpage” parameter), which allows unauthenticated remote users to bypass SecurityManager's intended restrictions and list and/or read a parent directory via a “/...” or directly into a path used in the POST parameter “field_file” by a web application. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt