CVE-2024-6781: Path Traversal
Published Aug 6, 2024
·Updated
Path traversal in Calibre <= 7.14.0 allow unauthenticated attackers to achieve arbitrary file read.
Affected Software
1 affected component
Calibre-ebook Calibre<=7.14.0
Remediation
Event History
Aug 6, 2024
CVE Published
via NVD·04:16 AM
Frequently Asked Questions
1
What is the severity of CVE-2024-6781?
CVE-2024-6781 is rated as a high-severity vulnerability due to its ability to allow arbitrary file read by unauthenticated attackers.
2
How do I fix CVE-2024-6781?
To fix CVE-2024-6781, you should upgrade Calibre to version 7.15.0 or later, which addresses the path traversal issue.
3
Who is affected by CVE-2024-6781?
CVE-2024-6781 affects all versions of Calibre up to and including 7.14.0.
4
What type of vulnerability is CVE-2024-6781?
CVE-2024-6781 is a path traversal vulnerability that allows unauthorized access to files on the system.
5
Can CVE-2024-6781 be exploited remotely?
Yes, CVE-2024-6781 can be exploited remotely since it allows unauthenticated attackers to read arbitrary files.