• caglararli@hotmail.com
  • 05386281520

CVE-2024-24765 | IceWhaleTech CasaOS-UserService up to 0.4.6 User Avatar Image information disclosure

Çağlar Arlı      -    63 Views

CVE-2024-24765 | IceWhaleTech CasaOS-UserService up to 0.4.6 User Avatar Image information disclosure

A vulnerability was found in IceWhaleTech CasaOS-UserService up to 0.4.6. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component User Avatar Image Handler. The manipulation leads to information disclosure. This vulnerability is known as CVE-2024-24765. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected component.