CVE Vulnerabilities

CVE-2024-3707

Exposure of Information Through Directory Listing

Published: Apr 12, 2024 | Modified: Nov 04, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Information exposure vulnerability in OpenGnsys affecting version 1.1.1d (Espeto). This vulnerability allows an attacker to enumerate all files in the web tree by accessing a php file.

Weakness

The product inappropriately exposes a directory listing with an index of all the resources located inside of the directory.

Affected Software

Name Vendor Start Version End Version
Opengnsys Opengnsys 1.1.1d (including) 1.1.1d (including)

Potential Mitigations

References