Product
critical
advisory
Unauthenticated Arbitrary File Access in HFS2
1 TTP 1 CVEHFS2 version 2.4.0 and earlier contains an unauthenticated arbitrary file access vulnerability allowing attackers to read, write, or delete files outside intended directories.
HFS2
1t
1c
critical
advisory
Unauthenticated Remote Code Execution in HFS2 via Template Injection
2 TTPs 1 CVEHFS2 version 2.4.0 and earlier contains a template injection vulnerability in the multipart upload handler that allows unauthenticated attackers to achieve remote code execution.
HFS2
2t
1c