CVE-2024-24122: Low severity wondershare edraw vulnerability
A remote code execution vulnerability in the project management of Wanxing Technology's Yitu project which allows an attacker to use the exp.adpx file as a zip compressed file to construct a special file name, which can be used to decompress the project file into the system startup folder, restart the system, and automatically execute the constructed attack script.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-24122?
The severity of CVE-2024-24122 is classified as critical due to its potential for remote code execution.
How do I fix CVE-2024-24122?
To fix CVE-2024-24122, update Wondershare Edraw to the latest version provided by the vendor.
Which software is affected by CVE-2024-24122?
CVE-2024-24122 affects Wondershare Edraw version 3.2.2.
What type of vulnerability is CVE-2024-24122?
CVE-2024-24122 is a remote code execution vulnerability.
Can CVE-2024-24122 allow an attacker to access my system?
Yes, CVE-2024-24122 allows an attacker to execute arbitrary code on the affected system.