CVE-2024-53566: Path Traversal
Published Dec 2, 2024
·Updated
An issue in the actionlistcategories() function of Sangoma Asterisk v22/22.0.0/22.0.0-rc1/22.0.0-rc2/22.0.0-pre1 allows attackers to execute a path traversal.
Affected Software
6 affected components
Sangoma Asterisk>=22.0.0-rc1<=22.0.0-rc2, >22
Sangoma Asterisk=22.0.0
Sangoma Asterisk=22.0.0-pre1
Sangoma Asterisk=22.0.0-rc1
Sangoma Asterisk=22.0.0-rc2
Debian Debian Linux=11.0
Event History
Dec 2, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-53566?
CVE-2024-53566 is rated as a critical severity vulnerability due to its potential for path traversal attacks.
2
How do I fix CVE-2024-53566?
To fix CVE-2024-53566, update Sangoma Asterisk to a version beyond 22.0.0-rc2.
3
What products are affected by CVE-2024-53566?
CVE-2024-53566 affects Sangoma Asterisk versions 22.0.0-rc1, 22.0.0-rc2, and 22.0.0-pre1.
4
How does CVE-2024-53566 impact system security?
CVE-2024-53566 allows attackers to exploit a path traversal vulnerability, potentially giving unauthorized access to system files.
5
Is there a workaround for CVE-2024-53566?
Currently, there are no documented workarounds for CVE-2024-53566, and upgrading is the recommended action.