Remote Code Execution Vulnerability in Languages.php Component
CVE-2024-31820
9.8CRITICAL
Key Information:
- Vendor
- CVE Published:
- 29 April 2024
What is CVE-2024-31820?
A vulnerability exists in Ecommerce-CodeIgniter-Bootstrap that enables remote attackers to execute arbitrary code through the getLangFolderForEdit method in the Languages.php component. This issue stems from a specific commit, which fails to properly manage inputs, allowing malicious parties to exploit the application and execute harmful code on the server.
