CVE-2024-43797
Last modified
CVE-2024-43797 is a medium-severity vulnerability rated 4.3/10 on the CVSS scale. audiobookshelf is a self-hosted audiobook and podcast server. A non-admin user is not allowed to create libraries (or access only the ones they have permission to). EPSS estimates a 0.55% chance of exploitation in the next 30 days.
Description
audiobookshelf is a self-hosted audiobook and podcast server. A non-admin user is not allowed to create libraries (or access only the ones they have permission to). However, the `LibraryController` is missing the check for admin user and thus allows a path traversal issue. Allowing non-admin users to write to any directory in the system can be seen as a form of path traversal. However, since it can be restricted to only admin permissions, fixing this is relatively simple and falls more into the realm of Role-Based Access Control (RBAC). This issue has been addressed in release version 2.13.0. All users are advised to upgrade. There are no known workarounds for this vulnerability.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Audiobookshelf | Audiobookshelf | < 2.13.0 |
References
- https://github.com/advplyr/audiobookshelf/security/advisories/GHSA-gg56-vj58-g5mcExploit, Mitigation, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2024-43797?
How severe is CVE-2024-43797?
How do I fix CVE-2024-43797?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-43791RequestStore provides per-request global storage for Rack. T…7.8
- CVE-2024-43792Halo is an open source website building tool. A security vul…6.1
- CVE-2024-43793Halo is an open source website building tool. A security vul…6.4
- CVE-2024-43794OpenSearch Dashboards Security Plugin adds a configuration m…6.1
- CVE-2024-43795OpenC3 COSMOS provides the functionality needed to send comm…6.1
- CVE-2024-43796Express.js minimalist web framework for node. In express < 4…4.7
- CVE-2024-43798Chisel is a fast TCP/UDP tunnel, transported over HTTP, secu…8.6
- CVE-2024-43799Send is a library for streaming files from the file system a…4.7
- CVE-2024-43800serve-static serves static files. serve-static passes untrus…4.7
- CVE-2024-43801Jellyfin is an open source self hosted media server. The Jel…5.4
- CVE-2024-43802Vim is an improved version of the unix vi text editor. When …4.5
- CVE-2024-43803The Bare Metal Operator (BMO) implements a Kubernetes API fo…4.9
Are you affected by CVE-2024-43797?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
