CVE-2024-1603

paddlepaddle/paddle 2.6.0 allows arbitrary file read via paddle.vision.ops.read_file.
Configurations

No configuration.

History

24 Mar 2024, 00:15

Type Values Removed Values Added
Summary (en) confirmed (en) paddlepaddle/paddle 2.6.0 allows arbitrary file read via paddle.vision.ops.read_file.

23 Mar 2024, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-23 19:15

Updated : 2024-03-25 01:51


NVD link : CVE-2024-1603

Mitre link : CVE-2024-1603

CVE.ORG link : CVE-2024-1603


JSON object : View

Products Affected

No product.

CWE
CWE-73

External Control of File Name or Path