VYPR
Unrated severityCISA KEVNVD Advisory· Published Mar 4, 2025· Updated Oct 21, 2025

CVE-2024-48248

CVE-2024-48248

Description

NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files via getImageByPath to /c/router (this may lead to remote code execution across the enterprise because PhysicalDiscovery has cleartext credentials).

Affected products

1
  • NAKIVO/Backup & Replication Directorv5
    Range: 0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.