Unrestricted File Upload Vulnerability in SeedProd Pro by SeedProd LLC
CVE-2024-54285
What is CVE-2024-54285?
The vulnerability identified as CVE-2024-54285 is a critical unrestricted file upload issue affecting the SeedProd Pro plugin developed by SeedProd LLC. This flaw allows attackers to upload malicious files, including web shells, to vulnerable web servers, thereby enabling remote code execution (RCE). The impact of this vulnerability is severe, as it poses significant risks to website integrity and security. Users of SeedProd Pro, particularly those using versions up to 6.18.10, should take immediate action to mitigate this risk by updating to the latest version or implementing security measures to block unauthorized file uploads.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SeedProd Pro <= 6.18.10
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved