CVE-2024-29466 is a high-severity Directory Traversal vulnerability in lsgwr spring boot online exam v.0.9, allowing authenticated attackers to execute arbitrary code through the FileTransUtil.java component. With a CVSS score of 8.8, this vulnerability presents a significant risk due to its low attack complexity and potential for complete compromise of confidentiality, integrity, and availability. While the vulnerability is not currently listed on the KEV catalog and no public exploit intelligence (Metasploit, Nuclei, ExploitDB) is available, its FAUCET Risk Score of 29.0/100 indicates a moderate overall risk, and its EPSS score suggests a low probability of exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| N/A | N/A | n/aCNA affected |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.