github.com
https://github.com/0xJacky/nginx-ui/releases/tag/v2.0.0-beta.36 CVE-2024-49366
HIGH
Nginx UI's json field can construct a directory traversal payload, causing arbitrary files to be written
Record summary
CVE-2024-49366 has a selected CVSS score of 7.7 (high).
Description
Nginx UI is a web user interface for the Nginx web server. Nginx UI v2.0.0-beta.35 and earlier gets the value from the json field without verification, and can construct a value value in the form of `../../`. Arbitrary files can be written to the server, which may result in loss of permissions. Version 2.0.0-beta.26 fixes the issue.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationPoC
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Oct 21, 2024 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
nginx-uiBrowse 0xJacky / nginx-ui | CVE List | < 2.0.0-beta.36 | affected |
nginx_uiBrowse nginxui / nginx_uiDefault status: unknown | CVE List | Before 2.0.0-beta.36 | affected |
References
2github.comConfirmation
https://github.com/0xJacky/nginx-ui/security/advisories/GHSA-prv4-rx44-f7jr