CVE-2024-11312 - TRCore DVC Path Traversal and Arbitrary Code Execution

4 days ago 1
ARTICLE AD BOX
CVE ID : CVE-2024-11312
Published : Nov. 18, 2024, 7:15 a.m. | 24 minutes ago
Description : The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of uploaded files. This allows unauthenticated remote attackers to upload arbitrary files to any directory, leading to arbitrary code execution by uploading webshells.
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article