CVE-2024-23607

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
14/02/2024
Last modified:
24/01/2025

Description

<br /> A directory traversal vulnerability exists in the F5OS QKView utility that allows an authenticated attacker to read files outside the QKView directory.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:f5:f5os-a:*:*:*:*:*:*:*:* 1.3.0 (including) 1.4.0 (excluding)
cpe:2.3:o:f5:f5os-c:*:*:*:*:*:*:*:* 1.3.0 (including) 1.6.0 (excluding)