Description
An authenticated arbitrary file upload vulnerability in the /documentCache/upload endpoint of InfoDom Performa 365 v4.0.1 allows attackers to execute arbitrary code via uploading a crafted SVG file.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Wed, 11 Dec 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-434 | |
| Metrics |
cvssV3_1
|
Tue, 03 Dec 2024 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authenticated arbitrary file upload vulnerability in the /documentCache/upload endpoint of InfoDom Performa 365 v4.0.1 allows attackers to execute arbitrary code via uploading a crafted SVG file. | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-12-11T14:36:16.491Z
Reserved: 2024-09-11T00:00:00.000Z
Link: CVE-2024-46625
Updated: 2024-12-11T14:36:10.351Z
Status : Deferred
Published: 2024-12-03T22:15:04.860
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-46625
No data.
OpenCVE Enrichment
No data.
Weaknesses