CVE-2024-46987
Arbitrary path traversal in Camaleon CMS
Severity Score
7.7
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
Track*
*SSVC
Descriptions
Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails. A path traversal vulnerability accessible via MediaController's download_private_file method allows authenticated users to download any file on the web server Camaleon CMS is running on (depending on the file permissions). This issue may lead to Information Disclosure. This issue has been addressed in release version 2.8.2. Users are advised to upgrade. There are no known workarounds for this vulnerability.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:Track*
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2024-09-16 CVE Reserved
- 2024-09-18 CVE Published
- 2024-09-18 CVE Updated
- 2024-09-25 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
https://codeql.github.com/codeql-query-help/ruby/rb-path-injection | X_refsource_misc | |
https://github.com/owen2345/camaleon-cms/security/advisories/GHSA-cp65-5m9r-vc2c | X_refsource_confirm | |
https://owasp.org/www-community/attacks/Path_Traversal | X_refsource_misc | |
https://www.reddit.com/r/rails/comments/1exwtdm/camaleon_cms_281_has_been_released | X_refsource_misc |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Owen2345 Search vendor "Owen2345" | Camaleon-cms Search vendor "Owen2345" for product "Camaleon-cms" | < 2.8.2 Search vendor "Owen2345" for product "Camaleon-cms" and version " < 2.8.2" | en |
Affected
|