AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-49780

MEDIUM · CVSS 5.3 EPSS 0.55%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-02-20 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.3. It may be remotely exploitable.

CVE
CVE-2024-49780
Severity
MEDIUM
CVSS
5.3
EPSS
0.55%

Original NVD Description

IBM OpenPages with Watson 8.3 and 9.0 IBM OpenPages could allow a remote attacker to traverse directories on the system. An attacker with privileges to perform Import Configuration could send a specially crafted http request containing "dot dot" sequences (/../) in the file name parameter used in Import Configuration to write files to arbitrary locations outside of the specified directory and possibly overwrite arbitrary files.

Related CVEs

Other vulnerabilities affecting the same vendor(s)