Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| CData | API Server | 0 ~ 23.4.8844 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | PoC for Exploiting CVE-2024-31848/49/50/51 - File Path Traversal | https://github.com/Stuub/CVE-2024-31848-PoC | POC Details |
| 2 | A path traversal vulnerability exists in the Java version of CData API Server < 23.4.8844 when running using the embedded Jetty server, which could allow an unauthenticated remote attacker to gain complete administrative access to the application. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-31848.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2024-31849 | 9.8 CRITICAL | CData Connect 安全漏洞 |
| CVE-2024-31850 | 8.6 HIGH | CData Arc 安全漏洞 |
| CVE-2024-31851 | 8.6 HIGH | CData Sync 安全漏洞 |
No comments yet