CVE-2024-53696: QuLog Center
A server-side request forgery (SSRF) vulnerability has been reported to affect QuLog Center. If exploited, the vulnerability could allow remote attackers who have gained administrator access to read application data.
We have already fixed the vulnerability in the following versions: QuLog Center 1.7.0.829 ( 2024/10/01 ) and later QuLog Center 1.8.0.888 ( 2024/10/15 ) and later QTS 4.5.4.2957 build 20241119 and later QuTS hero h4.5.4.2956 build 20241119 and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-53696?
CVE-2024-53696 has been classified as a high severity vulnerability.
How do I fix CVE-2024-53696?
To fix CVE-2024-53696, update QuLog Center to version 1.7.0.829 or later, or ensure that QTS and QuTS hero are updated to the latest versions.
What type of vulnerability is CVE-2024-53696?
CVE-2024-53696 is a server-side request forgery (SSRF) vulnerability.
Who is affected by CVE-2024-53696?
CVE-2024-53696 affects users who have administrator access to vulnerable versions of QuLog Center, QTS, and QuTS hero.
What can attackers do if CVE-2024-53696 is exploited?
If exploited, CVE-2024-53696 allows remote attackers to read application data.