Sploitus

CVE-2024-2056

2 known exploits for CVE-2024-2056

Services that are running and bound to the loopback interface on the Artica Proxy are accessible through the proxy service. In particular, the "tailon" service is running, running as the root user, is bound to the loopback interface, and is listening on TCP port 7050. Security issues associated with exposing this network service are documented at gvalkov's 'tailon' GitHub repo. Using the tailon service, the contents of any file on the Artica Proxy can be viewed.

Affected products
Artica Proxy, Tailon
Articatech Artica Proxy
= 4.50.000000
CVSS 3.1
9.8 CRITICAL
EPSS
16.7% (97th percentile)
Weakness
CWE-288, CWE-552
NVD status
Analyzed
Published
2024-03-05
CVE-2024-2056 at NVD
Authoritative description, scoring and affected products

2 known exploits for CVE-2024-2056

Proof-of-concept code and exploit modules indexed by Sploitus