CVE-2024-5043: Emlog Pro setting.php unrestricted upload
A vulnerability was found in Emlog Pro 2.3.4 and classified as critical. Affected by this issue is some unknown functionality of the file admin/setting.php. The manipulation leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264740. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5043?
CVE-2024-5043 is classified as a critical vulnerability that allows for unrestricted file uploads.
How do I fix CVE-2024-5043?
To fix CVE-2024-5043, upgrade to the latest version of Emlog Pro that addresses this vulnerability.
What affects CVE-2024-5043?
CVE-2024-5043 affects Emlog Pro version 2.3.4 specifically.
Can CVE-2024-5043 be exploited remotely?
Yes, CVE-2024-5043 can be exploited remotely due to its unrestricted upload capability.
What file is associated with CVE-2024-5043?
CVE-2024-5043 is associated with the file admin/setting.php.