CVE-2024-56179

HIGH

MindManager <24.1.150 - Path Traversal

Title source: llm
STIX 2.1

Description

In MindManager Windows versions prior to 24.1.150, attackers could potentially write to unexpected directories in victims' machines via directory traversal if victims opened file attachments located in malicious mmap files.

References (2)

Core 2
Core References
Various Sources
https://alludo.com

Scores

CVSS v3 7.8
EPSS 0.0035
EPSS Percentile 27.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-22
Status published
Published Aug 22, 2025
Tracked Since Feb 18, 2026