CVE-2024-27114 - SO Planning Unauthenticated Remote Code Execution

1 month ago 26
ARTICLE AD BOX
CVE ID : CVE-2024-27114
Published : Sept. 11, 2024, 2:15 p.m. | 24 minutes ago
Description : A unauthenticated Remote Code Execution (RCE) vulnerability is found in the SO Planning online planning tool. If the public view setting is enabled, a attacker can upload a PHP-file that will be available for execution for a few milliseconds before it is removed, leading to execution of code on the underlying system. The vulnerability has been remediated in version 1.52.02.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article