CVE-2024-27283

HIGH

Veritas eDiscovery Platform <10.2.5 - Path Traversal

Title source: llm
STIX 2.1

Description

A vulnerability was discovered in Veritas eDiscovery Platform before 10.2.5. The application administrator can upload potentially malicious files to arbitrary locations on the server on which the application is installed.

References (1)

Core 1

Scores

CVSS v3 7.2
EPSS 0.0045
EPSS Percentile 63.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-434
Status published
Products (1)
veritas/ediscovery_platform < 10.2.5
Published Feb 22, 2024
Tracked Since Feb 18, 2026