ZeroHour

CVE-2024-40514

CVSS 3.1
4.6 medium
EPSS
<1%p23
Published
()
Modified
Description

Insecure Permissions vulnerability in themesebrand Chatvia v.5.3.2 allows a remote attacker to escalate privileges via the User profile name and image upload functions.

Vendors
themesbrand
Products
chatvia
Weakness
CWE-276
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.