{"id":"CVE-2024-54216","title":"Path Traversal: '.../...//' vulnerability in reputeinfosystems ARForms allows Path Traversal.\n\nThis issue affects ARForms: from n/a before 7.0.2.","summary":"Path Traversal: '.../...//' vulnerability in reputeinfosystems ARForms allows Path Traversal.\n\nThis issue affects ARForms: from n/a before 7.0.2.","severity":"high","cvss":7.7,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N","cwe":["CWE-35"],"vendor":"reputeinfosystems","product":"arforms","affected":["arforms <= 6.4.1"],"published":"2024-12-06","updated":"2026-07-07","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2024-54216","references":[{"url":"https://patchstack.com/database/wordpress/plugin/arforms/vulnerability/wordpress-arforms-plugin-6-4-1-subscriber-arbitrary-file-read-vulnerability?_s_id=cve","label":"audit@patchstack.com"}],"tags":["nvd"],"epss":0.00551,"epssPercentile":0.43721,"ingestedAt":"2026-07-07T12:52:59.347Z","slug":"CVE-2024-54216","body":"## Overview\n\nPath Traversal: '.../...//' vulnerability in reputeinfosystems ARForms allows Path Traversal.\n\nThis issue affects ARForms: from n/a before 7.0.2.\n\n## Affected\n\n- `arforms <= 6.4.1`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":42,"depthScoreParts":{"impact":42.4,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}