CVE-2024-2055

CVE-2024-2055: Artica Proxy Unauthenticated File Manager Vulnerability

Vendor Artica Tech
Product Artica Proxy
Weakness CWE-288
Published March 5, 2024
Last update February 13, 2025

CVSS base score

What the vulnerability does

01Description

The "Rich Filemanager" feature of Artica Proxy provides a web-based interface for file management capabilities. When the feature is enabled, it does not require authentication by default, and runs as the root user.

Key dates

02Disclosure timeline

March 5, 2024 CVE published
February 13, 2025 Record updated