CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') may allow Unauthenticated RCE
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-24969 | MileSight DeviceHub - CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') may allow Unauthenticated RCE |
| Link | Providers |
|---|---|
| https://www.gov.il/en/Departments/faq/cve_advisories |
|
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 10 Apr 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Canonical
Canonical ubuntu Linux Milesight Milesight devicehub |
|
| CPEs | cpe:2.3:a:milesight:devicehub:3.0.1-r1:*:*:*:regular:*:*:* cpe:2.3:o:canonical:ubuntu_linux:20.04:*:*:*:-:*:*:* |
|
| Vendors & Products |
Canonical
Canonical ubuntu Linux Milesight Milesight devicehub |
Status: PUBLISHED
Assigner: INCD
Published:
Updated: 2024-08-02T00:41:54.420Z
Reserved: 2024-02-26T09:27:55.324Z
Link: CVE-2024-27776
Updated: 2024-08-02T00:41:54.420Z
Status : Analyzed
Published: 2024-06-02T13:15:08.510
Modified: 2025-04-10T20:24:31.270
Link: CVE-2024-27776
No data.
OpenCVE Enrichment
No data.
EUVD