FOG is a cloning/imaging/rescue suite/inventory management system. Prior to 1.5.10.34, packages/web/lib/fog/reportmaker.class.php in FOG was affected by a command injection via the filename parameter to /fog/management/export.php. This vulnerability is fixed in 1.5.10.34.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 29 Sep 2025 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:fogproject:fogproject:*:*:*:*:*:*:*:* |
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-02T04:33:11.177Z
Reserved: 2024-07-02T19:37:18.601Z
Link: CVE-2024-39914
Updated: 2024-08-02T04:33:11.177Z
Status : Analyzed
Published: 2024-07-12T15:15:11.607
Modified: 2025-09-29T13:51:33.690
Link: CVE-2024-39914
No data.
OpenCVE Enrichment
Updated: 2025-07-12T23:06:31Z
Weaknesses