CVE-2024-30143 Information

Description

HCL AppScan Traffic Recorder fails to adequately neutralize special characters within the filename potentially allowing it to resolve to a location beyond the restricted directory. Potential exploits can completely disrupt or takeover the application or the computer where the application is running.

Reference

https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0117697 https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0119824

Share on: