7.5
HIGH
CVE-2024-11944
iXsystems TrueNAS CORE Tarfile Directory Traversal Remote Code Execution Vulnerability
Description

iXsystems TrueNAS CORE tarfile.extractall Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of iXsystems TrueNAS devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the tarfile.extractall method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of root. Was ZDI-CAN-25626.

INFO

Published Date :

Dec. 30, 2024, 9:15 p.m.

Last Modified :

Dec. 30, 2024, 9:15 p.m.

Remotely Exploitable :

No

Impact Score :

5.9

Exploitability Score :

1.6
Affected Products

The following products are affected by CVE-2024-11944 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below.

No affected product recoded yet

References to Advisories, Solutions, and Tools

Here, you will find a curated list of external links that provide in-depth information, practical solutions, and valuable tools related to CVE-2024-11944.

URL Resource
https://www.truenas.com/docs/core/13.0/gettingstarted/corereleasenotes/#130-u63
https://www.zerodayinitiative.com/advisories/ZDI-24-1643/

We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).

Results are limited to the first 15 repositories due to potential performance issues.

The following list is the news that have been mention CVE-2024-11944 vulnerability anywhere in the article.

  • TheCyberThrone
CVE-2024-10957: UpdraftPlus WordPress Plugin Vulnerability

CVE-2024-10957 is a high-severity vulnerability affecting the UpdraftPlus: WP Backup & Migration Plugin for WordPress. This vulnerability, present in versions up to and including 1.24.11, enables atta ... Read more

Published Date: Jan 06, 2025 (2 days, 20 hours ago)
  • TheCyberThrone
CVE-2024-43405 Vulnerability in Nuclei

CVE-2024-43405 is a high severity vulnerability identified in Nuclei, a widely used open-source vulnerability scanner. This vulnerability, affecting versions 3.0.0 to 3.3.1, allows attackers to bypass ... Read more

Published Date: Jan 06, 2025 (3 days, 3 hours ago)
  • TheCyberThrone
TheCyberThrone Security Weekly Review – January 04, 2025

Welcome to TheCyberThrone cybersecurity week in review will be posted covering the important security happenings. This review is for the week ending Saturday, January 04, 2025.CVE-2024-56512 impacts A ... Read more

Published Date: Jan 05, 2025 (3 days, 16 hours ago)
  • TheCyberThrone
CVE-2024-11944: TrueNAS CORE has Severe Directory Traversal Flaw

CVE-2024-11944 is a vulnerability identified in iXsystems TrueNAS CORE. This vulnerability is classified as a Directory Traversal and Remote Code Execution (RCE) flaw. The exploitation of this vulnera ... Read more

Published Date: Jan 04, 2025 (4 days, 23 hours ago)
  • Cybersecurity News
CVE-2024-11944: TrueNAS CORE Vulnerability Allows Unauthenticated Attacks

A critical vulnerability has been uncovered in TrueNAS CORE, the popular open-source network-attached storage (NAS) operating system. Tracked as CVE-2024-11944 and assigned a CVSS score of 7.5, this s ... Read more

Published Date: Dec 31, 2024 (1 week, 2 days ago)

The following table lists the changes that have been made to the CVE-2024-11944 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.

  • New CVE Received by [email protected]

    Dec. 30, 2024

    Action Type Old Value New Value
    Added Description iXsystems TrueNAS CORE tarfile.extractall Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of iXsystems TrueNAS devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the tarfile.extractall method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of root. Was ZDI-CAN-25626.
    Added CVSS V3 AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
    Added CWE CWE-22
    Added Reference https://www.truenas.com/docs/core/13.0/gettingstarted/corereleasenotes/#130-u63
    Added Reference https://www.zerodayinitiative.com/advisories/ZDI-24-1643/
EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days. Following chart shows the EPSS score history of the vulnerability.
CWE - Common Weakness Enumeration

While CVE identifies specific instances of vulnerabilities, CWE categorizes the common flaws or weaknesses that can lead to vulnerabilities. CVE-2024-11944 is associated with the following CWEs:

CVSS30 - Vulnerability Scoring System
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability