Softaculous Webuzo contains a command injection in the password reset functionality. A remote, authenticated attacker can exploit this vulnerability to gain code execution on the system.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: XI

Published: 2024-07-25T21:44:53.974Z

Updated: 2024-08-01T23:28:11.074Z

Reserved: 2024-01-25T23:43:07.962Z

Link: CVE-2024-24622

cve-icon Vulnrichment

Updated: 2024-08-01T23:28:11.074Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-25T22:15:05.497

Modified: 2024-07-30T15:35:43.937

Link: CVE-2024-24622

cve-icon Redhat

No data.