CVE-2024-3737 | cym1102 nginxWebUI up to 3.9.9 /adminPage/www/addOver findCountByQuery dir path traversal (Issue 138)
A vulnerability was found in cym1102 nginxWebUI up to 3.9.9. It has been rated as critical. The impacted element is the function findCountByQuery of the file /adminPage/www/addOver. This manipulation of the argument dir causes path traversal.
This vulnerability is registered as CVE-2024-3737. Remote exploitation of the attack is possible. Furthermore, an exploit is available.