{ "id": "CVE-2024-25164", "sourceIdentifier": "cve@mitre.org", "published": "2024-03-05T00:15:52.400", "lastModified": "2024-03-05T13:41:01.900", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "iA Path Traversal vulnerability exists in iDURAR v2.0.0, that allows unauthenticated attackers to expose sensitive files via the download functionality." }, { "lang": "es", "value": "La vulnerabilidad iA Path Traversal existe en iDURAR v2.0.0, que permite a atacantes no autenticados exponer archivos confidenciales a trav\u00e9s de la funcionalidad de descarga." } ], "metrics": {}, "references": [ { "url": "https://github.com/idurar/idurar-erp-crm/tree/2.0.0/routes/erpRoutes/erpDownloadRouter.js", "source": "cve@mitre.org" }, { "url": "https://github.com/u32i/cve/tree/main/CVE-2024-25164", "source": "cve@mitre.org" } ] }