cve/2024/CVE-2024-56477.md
2025-09-29 21:09:30 +02:00

868 B

CVE-2024-56477

Description

IBM Power Hardware Management Console V10.3.1050.0 could allow an authenticated user to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system.

POC

Reference

No PoCs from references.

Github