CVE-2024-9923
CVSS 3.1 Score 4.9 of 10 (medium)
Details
Summary
CVE-2024-9923 is a vulnerability affecting the Team+ product from TEAMPLUS TECHNOLOGY. This issue arises due to insufficient validation of a page parameter. As a result, administrators with remote access can transfer system files to the website's root directory, exposing them for potential exploitation. This vulnerability poses a significant risk, particularly in environments where the Team+ product is used to manage critical data, and could lead to data breaches or unauthorized system access. It is essential for organizations using this product to apply the necessary patches to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Team