Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-42142 | SHIRASAGI prior to v1.19.1 processes URLs in HTTP requests improperly, resulting in a path traversal vulnerability. If this vulnerability is exploited, arbitrary files on the server may be retrieved when processing crafted HTTP requests. |
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 17 Oct 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 15 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ss-proj
Ss-proj shirasagi |
|
| CPEs | cpe:2.3:a:ss-proj:shirasagi:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ss-proj
Ss-proj shirasagi |
|
| Metrics |
ssvc
|
Tue, 15 Oct 2024 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SHIRASAGI prior to v1.19.1 processes URLs in HTTP requests improperly, resulting in a path traversal vulnerability. If this vulnerability is exploited, arbitrary files on the server may be retrieved when processing crafted HTTP requests. | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-10-23T04:58:28.816Z
Reserved: 2024-10-04T06:36:35.246Z
Link: CVE-2024-46898
Updated: 2024-10-15T13:48:29.057Z
Status : Analyzed
Published: 2024-10-15T07:15:02.267
Modified: 2024-10-17T17:52:00.700
Link: CVE-2024-46898
No data.
OpenCVE Enrichment
No data.
EUVD