CVE-2024-7450

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Aug 4, 2024
Updated: Aug 9, 2024
CWE ID 434

Summary

CVE-2024-7450 is a newly disclosed critical vulnerability affecting the Image Handler component of itsourcecode Placement Management System 1.0. The issue lies in the /resume_upload.php file and allows for unrestricted file uploads via manipulation of the argument fileToUpload. The attack can be executed remotely, making it a significant threat. The exploit for this vulnerability has been made public, increasing the risk of exploitation. Vulnerability database VDB has assigned the identifier VDB-273541 to this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share