CVE-2024-1098

CVSS V2 None CVSS V3 None
Description
A vulnerability was found in Rebuild up to 3.5.5 and classified as problematic. This issue affects the function QiniuCloud.getStorageFile of the file /filex/proxy-download. The manipulation of the argument url leads to information disclosure. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-252455.
Overview
  • CVE ID
  • CVE-2024-1098
  • Assigner
  • VulDB
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-01-31T11:31:04.316Z
  • Last Modified Date
  • 2024-01-31T11:31:04.316Z
References
Reference URL Reference Tags
https://vuldb.com/?id.252455 vdb-entry technical-description
https://vuldb.com/?ctiid.252455 signature permissions-required
https://www.yuque.com/mailemonyeyongjuan/tha8tr/ouiw375l0m8mw5ls exploit
History
Created Old Value New Value Data Type Notes
2024-06-26 05:51:57 Added to TrackCVE