Arbitrary File Read Vulnerability in CRMEB v5.4.0 by CRMEB
CVE-2024-52726

Currently unrated

Key Information:

Vendor

CRMEB

Status
Vendor
CVE Published:
22 November 2024

What is CVE-2024-52726?

CRMEB version 5.4.0 has a security flaw in the 'save_basics' function that permits unauthorized file access. This vulnerability enables attackers to read sensitive files on the server, potentially leading to exposure of confidential user data or critical system files. It is important for users and administrators of CRMEB v5.4.0 to implement necessary security measures and updates to mitigate this risk effectively.

References

EPSS Score

37% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

.