CVE-2024-24043
Severity CVSS v4.0:
Pending analysis
Type:
CWE-22
Path Traversal
Publication date:
19/03/2024
Last modified:
15/04/2026
Description
Directory Traversal vulnerability in Speedy11CZ MCRPX v.1.4.0 and before allows a local attacker to execute arbitrary code via a crafted file.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
References to Advisories, Solutions, and Tools
- https://gist.github.com/apple502j/193358682885fe1a6708309ce934e4ed
- https://github.com/Speedy11CZ/mcrpx/commit/02ca6d1fd851567560046766ac9d04d20db35b8e
- https://github.com/Speedy11CZ/mcrpx/releases/tag/v1.4.1
- https://gist.github.com/apple502j/193358682885fe1a6708309ce934e4ed
- https://github.com/Speedy11CZ/mcrpx/commit/02ca6d1fd851567560046766ac9d04d20db35b8e
- https://github.com/Speedy11CZ/mcrpx/releases/tag/v1.4.1



