Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-34274 | External Control of File Name or Path vulnerability in PlexTrac allows Local Code Inclusion through use of an undocumented API endpoint.This issue affects PlexTrac: from 1.61.3 before 2.8.1. |
Wed, 01 Oct 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:plextrac:plextrac:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Mon, 16 Dec 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 13 Dec 2024 06:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | External Control of File Name or Path vulnerability in PlexTrac allows Local Code Inclusion through use of an undocumented API endpoint.This issue affects PlexTrac: from 1.61.3 before 2.8.1. | |
| Title | Local File Inclusion | |
| Weaknesses | CWE-73 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: PlexTrac
Published:
Updated: 2024-12-16T19:01:29.660Z
Reserved: 2024-11-26T19:25:20.831Z
Link: CVE-2024-11838
Updated: 2024-12-16T19:01:26.455Z
Status : Analyzed
Published: 2024-12-13T06:15:26.100
Modified: 2025-10-01T18:27:23.327
Link: CVE-2024-11838
No data.
OpenCVE Enrichment
Updated: 2025-07-13T11:21:54Z
EUVD