CVE-2024-41511

A Path Traversal (Local File Inclusion) vulnerability in "BinaryFileRedirector.ashx" in CADClick v1.11.0 and before allows remote attackers to retrieve arbitrary local files via the "path" parameter.
CVSS

No CVSS.

References
Configurations

Configuration 1 (hide)

cpe:2.3:a:4pace:cadclick:*:*:*:*:*:*:*:*

History

02 Jun 2025, 17:41

Type Values Removed Values Added
References () http://cadclick.de/ - () http://cadclick.de/ - Product
References () http://kimweb.de/ - () http://kimweb.de/ - Product
References () https://piuswalter.de/blog/multiple-critical-vulnerabilities-in-cadclick/ - () https://piuswalter.de/blog/multiple-critical-vulnerabilities-in-cadclick/ - Exploit, Third Party Advisory
CPE cpe:2.3:a:4pace:cadclick:*:*:*:*:*:*:*:*
First Time 4pace
4pace cadclick

07 Oct 2024, 15:15

Type Values Removed Values Added
References
  • () http://cadclick.de/ -
  • () http://kimweb.de/ -

04 Oct 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-04 18:15

Updated : 2025-06-02 17:41


NVD link : CVE-2024-41511

Mitre link : CVE-2024-41511


JSON object : View

Products Affected

4pace

  • cadclick
CWE

No CWE.