CVE-2024-13931: Authenticated Relative Path Traversal
Relative Path Traversal vulnerabilities in ASPECT allow access to file resources if session administrator credentials become compromised. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-13931?
CVE-2024-13931 has a significant severity as it allows unauthorized access to sensitive file resources if administrator credentials are compromised.
How do I fix CVE-2024-13931?
To remediate CVE-2024-13931, upgrade your ASPECT, NEXUS, or MATRIX Series software to version 3.08.04 or later.
Which versions of ASPECT are affected by CVE-2024-13931?
CVE-2024-13931 affects ASPECT-Enterprise, NEXUS Series, and MATRIX Series software versions up to and including 3.08.03.
What types of vulnerabilities does CVE-2024-13931 represent?
CVE-2024-13931 represents a Relative Path Traversal vulnerability, allowing access to files outside the intended directory.
Who is affected by CVE-2024-13931?
Organizations using ASPECT's Enterprise, NEXUS, or MATRIX Series software versions up to 3.08.03 are at risk from CVE-2024-13931.