CVE-2024-57450

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Feb 3, 2025
Updated: Feb 4, 2025
CWE ID 434

Summary

CVE-2024-57450 is a newly identified vulnerability affecting ChestnutCMS versions below 1.5.0. Hackers can exploit the Create template function to upload malicious files to the system, potentially leading to unauthorized access or data corruption. This issue poses a significant risk to websites using the affected version of ChestnutCMS and requires immediate attention from administrators to apply the necessary patches or upgrades. Unsecured file uploads can lead to severe consequences, including data breaches and website defacement. It's crucial to keep content management systems updated to protect against known vulnerabilities.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share