An Unrestricted Upload of File vulnerability has been found on Cegid Meta4 HR, that allows an attacker to upload malicios files to the server via '/config/espanol/update_password.jsp' file. Modifying the 'M4_NEW_PASSWORD' parameter, an attacker could store a malicious JSP file inside the file directory, to be executed the the file is loaded in the application.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-27585 An Unrestricted Upload of File vulnerability has been found on Cegid Meta4 HR, that allows an attacker to upload malicios files to the server via '/config/espanol/update_password.jsp' file. Modifying the 'M4_NEW_PASSWORD' parameter, an attacker could store a malicious JSP file inside the file directory, to be executed the the file is loaded in the application.
Fixes

Solution

The Meta4 HR system administrator should remove the following pages from the web servers facing the Internet: From M4WebServices: The folder "config" (containing the webappconfig.jsp page). In future releases of Cegid Meta4 HR, these pages will be removed from the default distribution, so that there is not a real possibility of being left on an Internet facing production server.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-08-13T13:20:44.141Z

Reserved: 2024-03-19T06:45:02.871Z

Link: CVE-2024-2636

cve-icon Vulnrichment

Updated: 2024-08-01T19:18:48.087Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-03-19T13:15:07.190

Modified: 2024-11-21T09:10:11.210

Link: CVE-2024-2636

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses