Local File Inclusion in netease-youdao/qanything
Vulnerability Description
A local file inclusion vulnerability exists in netease-youdao/qanything version v2.0.0. This vulnerability allows an attacker to read arbitrary files on the file system, which can lead to remote code execution by retrieving private SSH keys, reading private files, source code, and configuration files.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-12866
Credits & Attribution
No credits recorded in the NVD database.
More from netease-youdao
View All →Affected Vendor
netease-youdao
View all reports →