← Back

CVE-2024-57968

nvd nist
Published: Feb 3, 2025Modified: Nov 4, 2025CISA KEV

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

Advantive VeraCore before 2024.4.2.1 allows remote authenticated users to upload files to unintended folders (e.g., ones that are accessible during web browsing by other users). upload.aspx can be used for this.

Affected (1)

Products: Advantive: Veracore
1 product
Veracore
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 2024.4.2.1

References (4)

Source: cve@mitre.org
Permissions RequiredProductRelease Notes
Source: cve@mitre.org
ExploitTechnical DescriptionThird Party Advisory
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
US Government Resource

Timeline

No history available yet.