First published: Wed Sep 18 2024(Updated: )
Dedecms V5.7.115 contains an arbitrary code execution via file upload vulnerability in the backend.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dedecms v6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-46373 has been classified as a high severity vulnerability due to its potential for arbitrary code execution via file uploads.
To fix CVE-2024-46373, ensure that your Dedecms installation is updated to the latest version that patches this vulnerability.
CVE-2024-46373 affects Dedecms version V5.7.115 and potentially earlier versions.
CVE-2024-46373 is an arbitrary code execution vulnerability that allows attackers to upload malicious files.
While the best approach is to update, temporarily restricting file uploads or implementing strict file validation may serve as a workaround for CVE-2024-46373.