2024-08-27 20:03:15 +00:00

60 lines
1.8 KiB
JSON

{
"id": "CVE-2024-27283",
"sourceIdentifier": "cve@mitre.org",
"published": "2024-02-22T05:15:10.087",
"lastModified": "2024-08-27T19:35:18.260",
"vulnStatus": "Awaiting Analysis",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "A vulnerability was discovered in Veritas eDiscovery Platform before 10.2.5. The application administrator can upload potentially malicious files to arbitrary locations on the server on which the application is installed."
},
{
"lang": "es",
"value": "Se descubri\u00f3 una vulnerabilidad en Veritas eDiscovery Platform antes de la versi\u00f3n 10.2.5. El administrador de la aplicaci\u00f3n puede cargar archivos potencialmente maliciosos en ubicaciones arbitrarias del servidor en el que est\u00e1 instalada la aplicaci\u00f3n."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "cve@mitre.org",
"type": "Secondary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
"attackVector": "NETWORK",
"attackComplexity": "LOW",
"privilegesRequired": "HIGH",
"userInteraction": "NONE",
"scope": "UNCHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"availabilityImpact": "HIGH",
"baseScore": 7.2,
"baseSeverity": "HIGH"
},
"exploitabilityScore": 1.2,
"impactScore": 5.9
}
]
},
"weaknesses": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"type": "Secondary",
"description": [
{
"lang": "en",
"value": "CWE-434"
}
]
}
],
"references": [
{
"url": "https://www.veritas.com/support/en_US/security/VTS23-020",
"source": "cve@mitre.org"
}
]
}