CVE-2024-51058
EUVD-2024-338126.11.2024, 18:15
Local File Inclusion (LFI) vulnerability has been discovered in TCPDF 6.7.5. This vulnerability enables a user to read arbitrary files from the server's file system through <img> src tag, potentially exposing sensitive information.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| tcpdf_project | tcpdf | 6.7.5 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| tcpdf_project | tcpdf | 6.7.5 ≤ 𝑥 < 6.7.6 | ADP |
Debian Releases
Common Weakness Enumeration