CVE-2024-9923

The Team+ from TEAMPLUS TECHNOLOGY does not properly validate a specific page parameter, allowing remote attackers with administrator privileges to move arbitrary system files to the website root directory and access them.
Configurations

Configuration 1 (hide)

cpe:2.3:a:teamplus:team\+_pro:*:*:*:*:private_cloud:android:*:*

History

No history.

Information

Published : 2024-10-14 04:15

Updated : 2024-10-24 13:24


NVD link : CVE-2024-9923

Mitre link : CVE-2024-9923

CVE.ORG link : CVE-2024-9923


JSON object : View

Products Affected

teamplus

  • team\+_pro
CWE
CWE-23

Relative Path Traversal

NVD-CWE-Other