• caglararli@hotmail.com
  • 05386281520

CVE-2024-33881 | VirtoSoftware Virto Bulk File Download for SharePoint 2019 5.5.44 UNC Share Pathname Download.ashx path information disclosure

Çağlar Arlı      -    47 Views

CVE-2024-33881 | VirtoSoftware Virto Bulk File Download for SharePoint 2019 5.5.44 UNC Share Pathname Download.ashx path information disclosure

A vulnerability classified as problematic has been found in VirtoSoftware Virto Bulk File Download for SharePoint 2019 5.5.44. Affected is an unknown function of the file Virto.SharePoint.FileDownloader/Api/Download.ashx of the component UNC Share Pathname Handler. The manipulation of the argument path leads to information disclosure. This vulnerability is traded as CVE-2024-33881. The attack can only be done within the local network. There is no exploit available.