Description

Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.

INFO

Published Date :

2024-11-19T14:23:09.718Z

Last Modified :

2025-03-21T18:03:44.339Z

Source :

JFROG
AFFECTED PRODUCTS

The following products are affected by CVE-2024-10524 vulnerability.

Vendors Products
Gnu
  • Wget

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact