CVE Radar Logo
CVERadar
CVE Radar Logo
CVERadar

CVE-2024-0418

High Severity
Upredsun
SVRS
68/100

CVSSv3
7.5/10

EPSS
0.00107/1

CVE-2024-0418 affects iSharer and upRedSun File Sharing Wizard, potentially leading to a denial of service. This vulnerability allows remote attackers to disrupt the service.

CVE-2024-0418 is a problematic vulnerability found in iSharer and upRedSun File Sharing Wizard up to version 1.5.0. Specifically, the GET Request Handler is susceptible to manipulation that results in a denial of service condition. The attack is remotely exploitable, and exploit code is publicly available, increasing the risk of exploitation. While the CVSS score is 7.5, indicating a high severity, the SOCRadar Vulnerability Risk Score (SVRS) is 68, suggesting a moderate risk that warrants monitoring. The vulnerability's impact lies in its potential to disrupt file-sharing services, affecting productivity and potentially leading to data unavailability for users. Immediate patching or mitigation strategies are advised to prevent service outages.

No tags available
CVSS:3.1
AV:N
AC:L
PR:N
UI:N
S:U
C:N
I:N
A:H
2024-01-11

2024-05-17

Indicators of Compromise

No IOCs found for this CVE

Exploits

No exploits found for this CVE

Enhance Your CVE Management with SOCRadar Vulnerability Intelligence
Get comprehensive CVE details, real-time notifications, and proactive threat management all in one platform.
CVE Details
Access comprehensive CVE information instantly
Real-time Tracking
Subscribe to CVEs and get instant updates
Exploit Analysis
Monitor related APT groups and threats
IOC Tracking
Analyze and track CVE-related IOCs

News

No news found for this CVE

Social Media

No tweets found for this CVE

Affected Software

Configuration 1
TypeVendorProduct
AppUpredsunfile_sharing_wizard

References

ReferenceLink
[email protected]https://cxsecurity.com/issue/WLB-2024010023
[email protected]https://vuldb.com/?ctiid.250438
[email protected]https://vuldb.com/?id.250438
[email protected]https://www.youtube.com/watch?v=WK7xK9KHiMU
GITHUBhttps://cxsecurity.com/issue/WLB-2024010023

CWE Details

CWE IDCWE NameDescription
CWE-404Improper Resource Shutdown or ReleaseThe program does not release or incorrectly releases a resource before it is made available for re-use.

CVE Radar

Real-time CVE Intelligence & Vulnerability Management Platform

CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.

Get Free Vulnerability Intelligence AccessAccess real-time CVE monitoring, exploit analysis, and threat intelligence