CVE-2024-27283

A vulnerability was discovered in Veritas eDiscovery Platform before 10.2.5. The application administrator can upload potentially malicious files to arbitrary locations on the server on which the application is installed.
Configurations

Configuration 1 (hide)

cpe:2.3:a:veritas:ediscovery_platform:*:*:*:*:*:*:*:*

History

06 May 2025, 17:33

Type Values Removed Values Added
CPE cpe:2.3:a:veritas:ediscovery_platform:*:*:*:*:*:*:*:*
References () https://www.veritas.com/support/en_US/security/VTS23-020 - () https://www.veritas.com/support/en_US/security/VTS23-020 - Vendor Advisory
First Time Veritas
Veritas ediscovery Platform

21 Nov 2024, 09:04

Type Values Removed Values Added
References () https://www.veritas.com/support/en_US/security/VTS23-020 - () https://www.veritas.com/support/en_US/security/VTS23-020 -

27 Aug 2024, 19:35

Type Values Removed Values Added
CWE CWE-434

22 Feb 2024, 19:07

Type Values Removed Values Added
Summary
  • (es) Se descubrió una vulnerabilidad en Veritas eDiscovery Platform antes de la versión 10.2.5. El administrador de la aplicación puede cargar archivos potencialmente maliciosos en ubicaciones arbitrarias del servidor en el que está instalada la aplicación.

22 Feb 2024, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-22 05:15

Updated : 2025-05-06 17:33


NVD link : CVE-2024-27283

Mitre link : CVE-2024-27283

CVE.ORG link : CVE-2024-27283


JSON object : View

Products Affected

veritas

  • ediscovery_platform
CWE
CWE-434

Unrestricted Upload of File with Dangerous Type