ZeroHour

CVE-2024-11017

CVSS 3.1
8.8 high
EPSS
<1%p53
Published
()
Modified
Description

Webopac from Grand Vice info does not properly validate uploaded file types, allowing remote attackers with regular privileges to upload and execute webshells, which could lead to arbitrary code execution on the server.

Vendors
vice
Products
webopac
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.