Arbitrary File Upload Flaw in WonderCMS Affects User Security
CVE-2024-41304

Currently unrated

Key Information:

Vendor

WonderCMS

Status
Vendor
CVE Published:
30 July 2024

What is CVE-2024-41304?

An arbitrary file upload vulnerability exists in the uploadFileAction() function of WonderCMS version 3.4.3. This flaw allows attackers to upload specially crafted SVG files that can lead to the execution of arbitrary code on the server. By exploiting this vulnerability, an attacker can potentially compromise the integrity and security of the application, making it crucial for users to apply appropriate security measures and patches.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

.