Medium severity6.5NVD Advisory· Published Mar 9, 2024· Updated Jun 17, 2026
CVE-2024-28753
CVE-2024-28753
Description
RaspAP (aka raspap-webgui) through 3.0.9 allows remote attackers to read the /etc/passwd file via a crafted request.
Affected products
3<=3.0.9+ 1 more
- (no CPE)range: <=3.0.9
- (no CPE)
Patches
Vulnerability mechanics
References
1- dustri.org/b/carrot-disclosure.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.