PoC Index

CVE-2024-46938

HIGH 7.5EPSS 46.1%

An issue was discovered in Sitecore Experience Platform (XP), Experience Manager (XM), and Experience Commerce (XC) 8.0 Initial Release through 10.4 Initial Release. An unauthenticated attacker can read arbitrary files.

CVSS v3.1
7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS v3.1
7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS
46.06% chance of exploitation in the next 30 days, 99th percentile
Nuclei
high
Published
2024-09-15
Updated
2024-09-17

Nuclei templates (1)

References

Related