Security Advisory

CVE-2024-24592

9.8
CRITICAL

Vulnerability Description

Lack of authentication in all versions of the fileserver component of Allegro AI’s ClearML platform allows a remote attacker to arbitrarily access, create, modify and delete files.
Published Date February 6, 2024
Official Source NIST NVD Advisory