Path Traversal and Insecure Direct Object Reference (IDOR) vulnerabilities in the eSignaViewer component in eSigna product versions 1.0 to 1.5 on all platforms allow an unauthenticated attacker to access arbitrary files in the document system via manipulation of file paths and object identifiers.
References
Configurations
No configuration.
History
20 Dec 2024, 16:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
CWE | CWE-639 |
20 Dec 2024, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-12-20 13:15
Updated : 2024-12-20 16:15
NVD link : CVE-2024-12014
Mitre link : CVE-2024-12014
CVE.ORG link : CVE-2024-12014
JSON object : View
Products Affected
No product.