Vulnerability Details CVE-2024-1303
Incorrectly limiting the path to a restricted directory vulnerability in Badger Meter Monitool that affects versions up to 4.6.3 and earlier. This vulnerability allows an authenticated attacker to retrieve any file from the device using the download-file functionality.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 66.1%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2024-1303
-
cpe:2.3:a:badgermeter:monitool:-
-
cpe:2.3:a:badgermeter:monitool:4.6.3