CVE-2024-30510

CVSS 3.1 Score 10.0 of 10 (high)

Details

Published Mar 29, 2024
Updated: Apr 1, 2024
CWE ID 434

Summary

CVE-2024-30510 is a newly identified vulnerability affecting Salon booking systems. The issue involves an Unrestricted File Upload vulnerability, which allows attackers to upload files of dangerous types, potentially leading to serious security consequences. This vulnerability affects Salon booking systems from an unknown version (n/a) through 9.5. Successful exploitation could result in arbitrary code execution or unauthorized access, posing a significant risk to the confidentiality, integrity, and availability of affected systems. It is recommended that users immediately upgrade their Salon booking systems to a patched version to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share