CVE-2024-48248
HIGH KEV NUCLEINAKIVO Backup & Replication < 11.0.0.88174 - Absolute Path Traversal via getImageByPath
Title source: llmExploitation Summary
CVE-2024-48248 is actively exploited and listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, added March 19, 2025. EIP tracks 2 public exploits from researchers including iSee857, watchtowrlabs. A Nuclei detection template is also available.
AI-analyzed exploit summary The repository contains functional exploit code for CVE-2024-48248, demonstrating command execution via a session-based shell endpoint in OpenCode. The script includes multi-threaded scanning capabilities and payload delivery for RCE.
Description
NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files via getImageByPath to /c/router (this may lead to remote code execution across the enterprise because PhysicalDiscovery has cleartext credentials).
Exploits (2)
The repository contains functional exploit code for CVE-2024-48248, demonstrating command execution via a session-based shell endpoint in OpenCode. The script includes multi-threaded scanning capabilities and payload delivery for RCE.
This is a functional proof-of-concept exploit for CVE-2024-48248, demonstrating unauthenticated arbitrary file read in NAKIVO Backup and Replication Solution. The script sends a crafted JSON payload to the target endpoint to retrieve file contents.
Nuclei Templates (1)
title:"NAKIVO"
title="NAKIVO"
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N