Unrated severityCISA KEVNVD Advisory· Published Mar 4, 2025· Updated Oct 21, 2025
CVE-2024-48248
CVE-2024-48248
Description
NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files via getImageByPath to /c/router (this may lead to remote code execution across the enterprise because PhysicalDiscovery has cleartext credentials).
Affected products
1- NAKIVO/Backup & Replication Directorv5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.