VulnerabilityDeferred
CVE-2024-34523
AChecker 1.5 allows remote attackers to read the contents of arbitrary files via the download.php path parameter by using Unauthenticated Path Traversal.
HIGH 7.5EPSS 0.82%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.82%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
AChecker 1.5 allows remote attackers to read the contents of arbitrary files via the download.php path parameter by using Unauthenticated Path Traversal. This occurs through readfile in PHP. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
- CVSS 3.1
- 7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 0.82% probability · 55th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-22
- Source
- cve@mitre.org
References
- https://github.com/inclusive-design/AChecker/blob/main/checker/download.php
- https://github.com/piuppi/Proof-of-Concepts/blob/main/AChecker/CVE-2024-34523.md
- https://github.com/inclusive-design/AChecker/blob/main/checker/download.php
- https://github.com/piuppi/Proof-of-Concepts/blob/main/AChecker/CVE-2024-34523.md
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.