First published: Fri Jul 12 2024(Updated: )
An arbitrary file upload vulnerability in the component /admin/cmsTemplate/savePlaceMetaData of Public CMS v.4.0.202302.e allows attackers to execute arbitrary code via uploading a crafted file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
sanluan PublicCMS | <=4.0.202302.e |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-40550 has a high severity rating due to its potential for arbitrary code execution.
To fix CVE-2024-40550, update Public CMS to a version greater than 4.0.202302.e that addresses this vulnerability.
CVE-2024-40550 is classified as an arbitrary file upload vulnerability.
Public CMS versions up to and including 4.0.202302.e are affected by CVE-2024-40550.
The vulnerable component in CVE-2024-40550 is /admin/cmsTemplate/savePlaceMetaData.