Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-35878 | An issue was discovered in Vaultize 21.07.27. When uploading files, there is no check that the filename parameter is correct. As a result, a temporary file will be created outside the specified directory when the file is downloaded. To exploit this, an authenticated user would upload a file with an incorrect file name, and then download it. |
| Link | Providers |
|---|---|
| https://github.com/DxRvs/vaultize_CVE-2024-36079 |
|
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 13 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Vaultize
Vaultize drm |
|
| CPEs | cpe:2.3:a:vaultize:drm:21.07.27:*:*:*:*:*:*:* | |
| Vendors & Products |
Vaultize
Vaultize drm |
|
| Metrics |
ssvc
|
Tue, 20 Aug 2024 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-22 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-13T15:59:17.166Z
Reserved: 2024-05-19T00:00:00.000Z
Link: CVE-2024-36079
Updated: 2024-08-02T03:30:12.957Z
Status : Deferred
Published: 2024-05-24T22:15:08.413
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-36079
No data.
OpenCVE Enrichment
No data.
EUVD