First published: Mon Jan 03 2022(Updated: )
An information exposure issue has been discovered in Opmantek Open-AudIT 4.2.0. The vulnerability allows an authenticated attacker to read file outside of the restricted directory.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Opmantek Open-AudIT | =4.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-44674 is an information exposure vulnerability found in Opmantek Open-AudIT 4.2.0.
CVE-2021-44674 allows an authenticated attacker to read files outside of the restricted directory.
The severity of CVE-2021-44674 is medium, with a CVSS severity score of 6.5.
To fix CVE-2021-44674, it is recommended to upgrade to a version of Open-AudIT that is not affected by the vulnerability, such as version 4.3.0 or later.
You can find more information about CVE-2021-44674 in the release notes for Open-AudIT v4.3.0, as well as on the Opmantek community website.