Subscriptions
Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 25 Sep 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Closed-loop
Closed-loop cless Server |
|
| CPEs | cpe:2.3:a:closed-loop:cless_server:4.5.2:*:*:*:*:*:*:* | |
| Vendors & Products |
Closed-loop
Closed-loop cless Server |
Fri, 20 Sep 2024 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-94 |
Fri, 20 Sep 2024 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Closedlooptechnology
Closedlooptechnology cless Server |
|
| Weaknesses | CWE-434 | |
| CPEs | cpe:2.3:a:closedlooptechnology:cless_server:4.5.2:*:*:*:*:*:*:* | |
| Vendors & Products |
Closedlooptechnology
Closedlooptechnology cless Server |
|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Thu, 19 Sep 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-94 | |
| Metrics |
cvssV3_1
|
Thu, 19 Sep 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An arbitrary file upload vulnerability in the Media Manager function of Closed-Loop Technology CLESS Server v4.5.2 allows attackers to execute arbitrary code via uploading a crafted PHP file to the upload endpoint. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-20T13:00:18.058Z
Reserved: 2024-07-05T00:00:00.000Z
Link: CVE-2024-40125
Updated: 2024-09-19T19:18:28.253Z
Status : Analyzed
Published: 2024-09-19T19:15:24.350
Modified: 2024-09-25T14:46:52.523
Link: CVE-2024-40125
No data.
OpenCVE Enrichment
No data.