CVE-2024-58312

Source
https://cve.org/CVERecord?id=CVE-2024-58312
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-58312.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-58312
Published
2025-12-11T22:15:52.790Z
Modified
2026-03-12T17:11:54.993892Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
[none]
Details

xbtitFM 4.1.18 contains a path traversal vulnerability that allows unauthenticated attackers to access sensitive system files by manipulating URL parameters. Attackers can exploit directory traversal techniques to read critical system files like using encoded path traversal characters in HTTP requests.

References

Affected packages

Git /

Affected ranges

Database specific

unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "4.1.18"
            }
        ]
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-58312.json"