Path Traversal vulnerability in the eSignaViewer component in eSigna product versions 1.0 to 1.5 on all platforms allow an unauthenticated attacker to access arbitrary files in the document system via manipulation of file paths and object identifiers.
CVSS
No CVSS.
References
Configurations
No configuration.
History
20 May 2025, 15:16
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : unknown |
CWE |
15 May 2025, 12:15
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
Summary | (en) Path Traversal vulnerability in the eSignaViewer component in eSigna product versions 1.0 to 1.5 on all platforms allow an unauthenticated attacker to access arbitrary files in the document system via manipulation of file paths and object identifiers. |
20 Dec 2024, 16:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-639 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
20 Dec 2024, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-12-20 13:15
Updated : 2025-05-20 15:16
NVD link : CVE-2024-12014
Mitre link : CVE-2024-12014
CVE.ORG link : CVE-2024-12014
JSON object : View
Products Affected
No product.
CWE
CWE-20
Improper Input Validation