CVE-2024-42523: Malicious File Upload
Published Aug 23, 2024
·Updated
publiccms V4.0.202302.e and before is vulnerable to Any File Upload via publiccms/admin/cmsTemplate/saveMetaData
Affected Software
2 affected components
PublicCMS publiccms<=V4.0.202302.e
PublicCMS publiccms<=4.0.202302.e
Event History
Aug 23, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-42523?
CVE-2024-42523 is considered a high severity vulnerability due to its ability to allow arbitrary file uploads.
2
How do I fix CVE-2024-42523?
To fix CVE-2024-42523, update your PublicCMS to version V4.0.202302.f or later where the vulnerability is addressed.
3
What versions of PublicCMS are affected by CVE-2024-42523?
PublicCMS versions V4.0.202302.e and earlier are affected by CVE-2024-42523.
4
What type of vulnerability is CVE-2024-42523?
CVE-2024-42523 is an Any File Upload vulnerability that can lead to unauthorized file execution.
5
Where can I find more information about CVE-2024-42523?
More information about CVE-2024-42523 can typically be found in security advisories or vulnerability databases.