A vulnerability classified as critical was found in Kurmi Provisioning Suite up to 7.9.0.34/7.10.0.18/7.11.0.15. This vulnerability affects unknown code of the component DocServlet. The manipulation leads to path traversal.

This vulnerability was named CVE-2024-54453. The attack can be initiated remotely. There is no exploit available.

It is recommended to upgrade the affected component.