CVE-2024-49201: Medium severity keyfactor remote file orchestrator vulnerability
Published Dec 18, 2024
·Updated
Keyfactor Remote File Orchestrator (aka remote-file-orchestrator) 2.8 before 2.8.1 allows Information Disclosure: sensitive information could be exposed at the debug logging level.
Affected Software
1 affected component
Keyfactor Remote File Orchestrator<2.8.1
Event History
Dec 18, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-49201?
CVE-2024-49201 has been classified as a moderate severity vulnerability due to the potential exposure of sensitive information.
2
How do I fix CVE-2024-49201?
To remediate CVE-2024-49201, update Keyfactor Remote File Orchestrator to version 2.8.1 or later.
3
What types of information could be disclosed in CVE-2024-49201?
CVE-2024-49201 may allow sensitive information to be exposed through debug logging mechanisms in the affected software.
4
What versions of Keyfactor Remote File Orchestrator are affected by CVE-2024-49201?
CVE-2024-49201 affects Keyfactor Remote File Orchestrator versions prior to 2.8.1.
5
Who is the vendor for CVE-2024-49201?
The vendor for CVE-2024-49201 is Keyfactor, which develops the Remote File Orchestrator software.