Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-24370 | A Local File Inclusion vulnerability has been found in ComfortKey, a product of Celsius Benelux. Using this vulnerability, an unauthenticated attacker may retrieve sensitive information about the underlying system. The vulnerability has been remediated in version 24.1.2. |
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 20 Aug 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Celsiusbenelux
Celsiusbenelux comfortkey |
|
| Weaknesses | CWE-22 | |
| CPEs | cpe:2.3:a:celsiusbenelux:comfortkey:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Celsiusbenelux
Celsiusbenelux comfortkey |
|
| Metrics |
cvssV3_1
|
Thu, 15 Aug 2024 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Celsius Benelux
Celsius Benelux comfortkey |
|
| CPEs | cpe:2.3:a:celsius_benelux:comfortkey:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Celsius Benelux
Celsius Benelux comfortkey |
|
| Metrics |
ssvc
|
Wed, 14 Aug 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Local File Inclusion vulnerability has been found in ComfortKey, a product of Celsius Benelux. Using this vulnerability, an unauthenticated attacker may retrieve sensitive information about the underlying system. The vulnerability has been remediated in version 24.1.2. | |
| Title | Local File Inclusion in ComfortKey before version 24.1.2 | |
| Weaknesses | CWE-200 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: DIVD
Published:
Updated: 2025-03-11T13:38:40.244Z
Reserved: 2024-02-19T19:21:08.621Z
Link: CVE-2024-27120
Updated: 2024-08-15T13:27:36.046Z
Status : Analyzed
Published: 2024-08-14T20:15:11.730
Modified: 2024-08-20T19:08:54.490
Link: CVE-2024-27120
No data.
OpenCVE Enrichment
No data.
EUVD