CVE-2024-48823

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Oct 14, 2024
Updated: Mar 15, 2025
CWE ID 276

Summary

CVE-2024-48823 is a local file inclusion vulnerability affecting Automatic Systems Maintenance's SlimLane product (version 29565_d74ecce0c1081d50546db573a499941b10799fb7). An attacker can exploit this issue in the PassageAutoServer.php page to include and execute arbitrary files on the server, potentially escalating privileges and gaining unauthorized access. This vulnerability poses a significant risk and requires immediate attention and patching to mitigate it.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share