Security Advisory

CVE-2024-45241

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-08-26 00:00:00
Last updated 2024-08-26 15:24:47
Assigner mitre
State PUBLISHED

Description

A traversal vulnerability in GeneralDocs.aspx in CentralSquare CryWolf (False Alarm Management) through 2024-08-09 allows unauthenticated attackers to read files outside of the working web directory via the rpt parameter, leading to the disclosure of sensitive information.