CVE-2024-24940: Path Traversal
Published Feb 6, 2024
·Updated
In JetBrains IntelliJ IDEA before 2023.3.3 path traversal was possible when unpacking archives
Affected Software
1 affected component
JetBrains IntelliJ IDEA<2023.3.3
Event History
Feb 6, 2024
CVE Published
via MITRE·09:21 AM
Data Sourced
via MITRE·09:21 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-24940?
The severity of CVE-2024-24940 is categorized as high due to the potential for path traversal attacks.
2
How do I fix CVE-2024-24940?
To fix CVE-2024-24940, users should upgrade their JetBrains IntelliJ IDEA to version 2023.3.3 or later.
3
What does CVE-2024-24940 vulnerability affect?
CVE-2024-24940 affects JetBrains IntelliJ IDEA versions prior to 2023.3.3.
4
What are the risks of CVE-2024-24940?
The risks of CVE-2024-24940 include unauthorized file access and potential data leakage due to path traversal.
5
When was CVE-2024-24940 discovered?
CVE-2024-24940 was reported in the context of JetBrains IntelliJ IDEA vulnerabilities prior to version 2023.3.3.