CVE-2024-46210: Malicious File Upload
Published Jan 10, 2025
·Updated
An arbitrary file upload vulnerability in the MediaPool module of Redaxo CMS v5.17.1 allows attackers to execute arbitrary code via uploading a crafted file.
Affected Software
2 affected components
REDAXO CMS
REDAXO REDAXO=5.17.1
Event History
Jan 10, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-46210?
The severity of CVE-2024-46210 is classified as critical due to the potential for arbitrary code execution.
2
How do I fix CVE-2024-46210?
To fix CVE-2024-46210, upgrade to the latest version of Redaxo CMS where the vulnerability has been patched.
3
What type of vulnerability is CVE-2024-46210?
CVE-2024-46210 is an arbitrary file upload vulnerability in the MediaPool module of Redaxo CMS.
4
Who is affected by CVE-2024-46210?
Users of Redaxo CMS v5.17.1 are affected by CVE-2024-46210.
5
What impact does CVE-2024-46210 have?
CVE-2024-46210 allows attackers to upload malicious files, potentially leading to arbitrary code execution on the server.