Impact
Acrist Environmental Monitoring Cloud Platform version 1.1.0 contains a flaw that allows an attacker to upload any file type without proper validation. The lack of access control and input filtering leads to unrestricted uploads, which could enable placement of malicious content on the server.
Affected Systems
The vulnerability affects the Acrel Environmental Monitoring Cloud Platform, specifically version 1.1.0. No other versions or related products are mentioned in the available data.
Risk and Exploitability
The CVSS base score of 6.9 indicates moderate severity, and the description notes the attack may be initiated remotely. Public proof‑of‑concept exploits have been released, raising the likelihood of real‑world attacks. EPSS data is not available and the vulnerability is not catalogued in the CISA KEV list. The unrestricted upload capability creates a risk that can be exploited without local access to the system.
OpenCVE Enrichment