CVE-2024-1116

CVSS 3.1 Score 7.3 of 10 (high)

Details

Published Jan 31, 2024
Updated: Mar 21, 2024
CWE ID 434

Summary

CVE-2024-1116 is a critical vulnerability found in openBI up to version 1.0.8, affecting the function index of the file /application/plugins/controller/Upload.php. This vulnerability allows for unrestricted upload, which can be exploited remotely. The exploit has been disclosed to the public and poses a potential danger to organizations using the affected products, including usu_3g, usu_3h, usu_3i, usu_3j, usu_3k, usu_3l, usu_3m, usu_3n, and usu_3o. It is recommended that organizations remediate this vulnerability as soon as possible to mitigate the risk it poses.

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2024-1116 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options