CVE Watchtower


← Back to CVE List

CVE-2024-23692NVD

Vulnerability Summary

Rejetto HTTP File Server, up to and including version 2.3m, is vulnerable to a template injection vulnerability. This vulnerability allows a remote, unauthenticated attacker to execute arbitrary commands on the affected system by sending a specially crafted HTTP request. As of the CVE assignment date, Rejetto HFS 2.3m is no longer supported.
Severity Level
CRITICAL(9.8)
Published Date
May 31, 2024
Last Modified
Jun 23, 2026
Exploitation Status
ACTIVE
EPSS Score (30-Day)
99.49%Probability
Root Weakness (CWE)
N/A
CVSS v3.1 Base Metrics
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredNone
User InteractionNone
ScopeUnchanged
ConfidentialityHigh
IntegrityHigh
AvailabilityHigh