CVE-2024-48248 - NAKIVO Backup & Replication Absolute Path Traversal Remote Code Execution

CVE ID : CVE-2024-48248 Published : March 4, 2025, 8:15 a.m. | 1 hour, 14 minutes ago Description : NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files via getImageByPath to /c/router (this may lead to remote code execution across the enterprise because PhysicalDiscovery has cleartext credentials). Severity: 8.6 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Mär 4, 2025 - 10:31
 0  0
CVE-2024-48248 - NAKIVO Backup & Replication Absolute Path Traversal Remote Code Execution
CVE ID : CVE-2024-48248
Published : March 4, 2025, 8:15 a.m. | 1 hour, 14 minutes ago
Description : NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files via getImageByPath to /c/router (this may lead to remote code execution across the enterprise because PhysicalDiscovery has cleartext credentials).
Severity: 8.6 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...