First published: Thu Nov 14 2024(Updated: )
A vulnerability classified as critical has been found in EyouCMS up to 1.6.7. Affected is an unknown function of the component Website Logo Handler. The manipulation leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
EyouCms | <=1.6.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-11211 is classified as a critical vulnerability.
To fix CVE-2024-11211, upgrade EyouCMS to a version later than 1.6.7 that addresses this vulnerability.
CVE-2024-11211 affects the Website Logo Handler component of EyouCMS.
Yes, CVE-2024-11211 can be exploited remotely.
CVE-2024-11211 is an unrestricted upload vulnerability.