An issue in Cute Http File Server v.3.1 allows a remote attacker to escalate privileges via the password verification component.
The product requires authentication, but the product has an alternate path or channel that does not require authentication.
Link | Tags |
---|---|
http://cute.com | product |
https://github.com/GZLDL/CVE/tree/main/Cute%20Http%20File%20Server%20JWT | broken link |
https://github.com/GZLDL/CVE/blob/main/CVE-2024-26566/CVE-2024-26566%20English.md | third party advisory |