CVE-2024-54285

CVSS 3.1 Score 9.1 of 10 (high)

Details

Published Dec 16, 2024
CWE ID 434

Summary

CVE-2024-54285 is a critical vulnerability affecting SeedProd Pro, version n/a through 6.18.10. This issue involves an Unrestricted File Upload vulnerability, where attackers can upload a web shell to a web server using SeedProd Pro. This dangerous type of file can execute arbitrary code, potentially leading to serious security breaches and unauthorized access to sensitive information. The vulnerability can have severe consequences, making it essential for users to upgrade to the latest SeedProd Pro version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share