PoC Index

CVE-2024-0550

CRITICAL 9.6EPSS 0.7%

A user who is privileged already `manager` or `admin` can set their profile picture via the frontend API using a relative filepath to then user the PFP GET API to download any valid files.The attacker would have to have been granted privileged permissions to the system before executing this attack.

CVSS v3.1
6.5 MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS v3.0
9.6 CRITICALCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N
EPSS
0.72% chance of exploitation in the next 30 days, 51th percentile
Published
2024-02-28
Updated
2024-08-22

Proof-of-concept exploits (1)

References

Related