ZeroHour

CVE-2024-36531

PoC
CVSS 3.1
5.7 medium
EPSS
<1%p37
Published
()
Modified
Description

nukeviet v.4.5 and before and nukeviet-egov v.1.2.02 and before are vulnerable to arbitrary code execution via the /admin/extensions/upload.php component.

Vendors
nukeviet
Products
egovernment, nukeviet
Weakness
CWE-94
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:L/A:L

In the news

No ingested article mentions this CVE yet.