Description

Directory Traversal vulnerability in Severalnines Cluster Control 1.9.8 before 1.9.8-9778, 2.0.0 before 2.0.0-9779, and 2.1.0 before 2.1.0-9780 allows a remote attacker to include and display file content in an HTTP request via the CMON API.

INFO

Published Date :

2024-07-26T00:00:00.000Z

Last Modified :

2024-08-06T20:31:53.543Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2024-41628 vulnerability.

Vendors Products
Severalnines
  • Clustercontrol

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact