CVE-2024-36267
EUVD-2024-3600730.05.2024, 06:15
Path traversal vulnerability exists in Redmine DMSF Plugin versions prior to 3.1.4. If this vulnerability is exploited, a logged-in user may obtain or delete arbitrary files on the server (within the privilege of the Redmine process).
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| kontron | redmine_dmsf_plugin | 𝑥 < 3.1.4 | ADP |