CVE-2024-0191
MEDIUMDescription
A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0. It has been classified as problematic. Affected is an unknown function of the file /admin/uploads/. The manipulation leads to file and directory information exposure. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-249504.
Is your site exposed to CVE-2024-0191?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| nia | rrj_nueva_ecija_engineer_online_portal |
References
Frequently Asked Questions
What is CVE-2024-0191? +
How severe is CVE-2024-0191? +
What products are affected by CVE-2024-0191? +
How do I check if I'm vulnerable to CVE-2024-0191? +
Related Vulnerabilities
Joomla Extension - j2commerce.com - Unauthenticated file upload with missing directory protection in J2Store 1.0.0-3.3.20, 4.0.0-4.0.20, 4.1.0-4.1.5 - The file …
TG8 Firewall exposes a directory such as /data/ over HTTP without authentication. This directory stores credential files for previously logged-in …
Ubee EVW3226 cable modem/routers firmware versions up to and including 1.0.20 store configuration backup files in the web root after …
During MegaBIP installation process, a user is encouraged to change a default path to administrative portal, as keeping it secret …
A vulnerability has been found in some Dahua products. An attacker may obtain the device’s CA root certificate. If that …
MCPVault is a lightweight Model Context Protocol server for safe access to files in an Obsidian vault. Prior to 0.11.5, …