QSearchQSearch

CVE-2024-7107

7.5 HIGH

Files or Directories Accessible to External Parties vulnerability in National Keep Cyber Security Services CyberMath allows Collect Data ...

Published: 2024-09-26 · Last updated: 2026-06-03

Severity and scoring

CVSS
7.5 HIGH
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CWE
CWE-552

Affected products

VendorProduct
nationalkeepcybermath

Description

Files or Directories Accessible to External Parties vulnerability in National Keep Cyber Security Services CyberMath allows Collect Data from Common Resource Locations. This issue affects CyberMath: before CYBM.240816253.

Source: NVD

References

Related CVEs

Same vendor

  • CVE-2024-7108 Incorrect Authorization vulnerability in National Keep Cyber Security Services CyberMath allows Accessing Functionality Not Properly Cons... (9.8 CRITICAL)
  • CVE-2023-6676 Cross-Site Request Forgery (CSRF) vulnerability in National Keep Cyber Security Services CyberMath allows Cross Site Request Forgery (8.8 HIGH)
  • CVE-2023-6675 Unrestricted Upload of File with Dangerous Type vulnerability in National Keep Cyber Security Services CyberMath allows Upload a Web Shel... (9.8 CRITICAL)
  • CVE-2023-6673 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in National Keep Cyber Security Servic... (6.1 MEDIUM)
  • CVE-2023-6672 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in National Keep Cyber Security Servic... (5.4 MEDIUM)

Same CWE

  • CVE-2025-14771 Files or directories accessible to external parties vulnerability in ABB T-MAC Plus (9.9 CRITICAL)
  • CVE-2026-45543 Nextcloud is an open source content collaboration platform (5.3 MEDIUM)
  • CVE-2026-40425 The administrator account for the Danelec MacGregor Voyage Data Recorder web interface can directly edit sensitive files related to auth... (5.7 MEDIUM)
  • CVE-2026-45088 Dalfox is a powerful open-source XSS scanner and utility focused on automation (7.5 HIGH)
  • CVE-2024-56462 IBM QRadar 7.5.0 through 7.5.0 UP15 Interim Fix 002 could allow a privileged user to upload a malicious backup archive that could be rest... (7.2 HIGH)