bazaar News Articles
Recent news articles refferecing the vendors vulnerabilities.
Ethical Hacking - CVE-2024-40348: Bazarr Directory Traversal Vulnerability
CVE-2024-40348 is a critical security vulnerability affecting Bazarr v1.4.3. This flaw, identified as a directory traversal, enables unauthenticated remote attackers to execute arbitrary file read operations within the system's filesystem.
Bazarr < 1.4.3 - Arbitrary File Read (CVE-2024-40348)
Bazarr 1.4.3 and earlier versions have a arbitrary file read vulnerability..
Critical Bazaar Vulnerability CVE-2024-40348: Directory Traversal Flaw Threatens System Integrity - The Cyber Express
The Bazaar v1.4.3 vulnerability allows attackers to perform directory traversal via the /api/swaggerui/static component without authentication.
PoC for CVE-2024-40348 has been spotted in the wild
POC for CVE-2024-40348. Will attempt to read /etc/passwd from target. bigb0x describes it as a bulk scanning and exploitation tool for CVE-2024-40348: Bazaar v1.4.3 allows unauthenticated attackers to execute a directory traversal. This vulnerability was discovered byΒ 4rdr. X: @MohamedNab1l Linked...