CVE-2024-54285
CVSS 3.1 Score 9.1 of 10 (high)
Details
Published Dec 16, 2024
CWE ID 434
Summary
CVE-2024-54285 is a critical vulnerability affecting SeedProd Pro, version n/a through 6.18.10. This issue involves an Unrestricted File Upload vulnerability, where attackers can upload a web shell to a web server using SeedProd Pro. This dangerous type of file can execute arbitrary code, potentially leading to serious security breaches and unauthorized access to sensitive information. The vulnerability can have severe consequences, making it essential for users to upgrade to the latest SeedProd Pro version as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share