terrasoft Vulnerabilities and Affected Products
Vulnerabilities associated with creatio_terrasoft_crm.
Products
Clear product- creatio_terrasoft_crm1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-25461HIGH | creatio crm_creatio Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')Directory Traversal vulnerability in Terrasoft, Creatio Terrasoft CRM v.7.18.4.1532 allows a remote attacker to obtain sensitive information via a crafted request to the terrasoft.axd component. CWE-22Feb 21, 2024 | CVSS7.5v3.1 | EPSS0.965% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |