CVE-2024-56052

CVSS 3.1 Score 9.9 of 10 (high)

Details

Published Dec 18, 2024
CWE ID 434

Summary

CVE-2024-56052 is a file upload vulnerability affecting the WPLMS platform before version 1.9.9.5.2. The issue permits unrestricted upload of dangerous file types, enabling an attacker to upload a web shell to a web server. This vulnerability could potentially lead to unauthorized access, data theft, and further system compromise. It is crucial for WPLMS users to update to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share