Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 22 Nov 2024 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Thu, 08 Aug 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Debian
Debian debian Linux |
|
| CPEs | cpe:2.3:o:debian:debian_linux:12.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Debian
Debian debian Linux |
Thu, 08 Aug 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openwebui
Openwebui open Webui |
|
| CPEs | cpe:2.3:a:openwebui:open_webui:0.1.105:*:*:*:*:*:*:* | |
| Vendors & Products |
Openwebui
Openwebui open Webui |
|
| References |
|
|
| Metrics |
ssvc
|
Thu, 08 Aug 2024 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 08 Aug 2024 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 07 Aug 2024 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Attacker controlled files can be uploaded to arbitrary locations on the web server's filesystem by abusing a path traversal vulnerability. | |
| Title | Open WebUI Arbitrary File Upload + Path Traversal | |
| Weaknesses | CWE-22 CWE-434 |
|
| References |
|
Status: PUBLISHED
Assigner: KoreLogic
Published:
Updated: 2024-08-08T15:02:49.851Z
Reserved: 2024-07-11T21:30:47.969Z
Link: CVE-2024-6707
Updated: 2024-08-08T13:16:27.267Z
Status : Modified
Published: 2024-08-07T23:15:41.457
Modified: 2024-11-21T09:50:09.680
Link: CVE-2024-6707
No data.
OpenCVE Enrichment
No data.