github.com
https://github.com/HackAllSec/CVEs/tree/main/Jan%20AFR%20vulnerability CVE-2024-36857
HIGHNuclei
Jan path traversal vulnerability
Record summary
CVE-2024-36857 has a selected CVSS score of 7.5 (high); EIP currently links 1 Nuclei template.
Description
Jan v0.4.12 was discovered to contain an arbitrary file read vulnerability via the /v1/app/readFileSync interface.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Aug 15, 2024 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Available material
- Nuclei templates
- 1
CISA SSVC decision
ExploitationPoC
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Aug 14, 2024 · Source: CVE List
Affected products and versions
3| Product | Source | Version range | Status |
|---|---|---|---|
| VulnCheck | Version data not supplied | ||
Default status: unknown | CVE List | 0.4.12 | affected |
@janhq/coreBrowse npm / @janhq/core | GitHub Advisory | Through 0.1.11 | affected |
Nuclei templates
1ProjectDiscoveryHIGHJan v0.4.12 'readFileSync' - Path TraversalCVSS 7.5
Jan v0.4.12 was discovered to contain an arbitrary file read vulnerability via the /v1/app/readFileSync interface.
Impact
Unauthenticated attackers can read arbitrary files from the system via path traversal in the readFileSync interface.
Remediation
Update Jan to a version later than v0.4.12 that patches the path traversal vulnerability.
AuthorsYusuf Amr
Template tagscvecve2024janlfivkevvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CPE: cpe:2.3:a:homebrew:jan:0.4.12:*:*:*:*:*:*:*
Shodan: http.favicon.hash:"-165268926"
FOFA: icon_hash="-165268926"
https://www.wiz.io/vulnerability-database/cve/cve-2024-36857 https://github.com/HackAllSec/CVEs/tree/main/Jan%20AFR%20vulnerability
Source: ProjectDiscovery
References
3github.com
https://github.com/janhq/jan nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2024-36857