CVE-2024-1142
Severity CVSS v4.0:
Pending analysis
Type:
CWE-22
Path Traversal
Publication date:
21/03/2024
Last modified:
21/03/2024
Description
Path Traversal in Sonatype IQ Server from version 143 allows remote authenticated attackers to overwrite or delete files via a specially crafted request. Version 171 fixes this issue.
Impact
Base Score 3.x
5.40
Severity 3.x
MEDIUM