CVE-2024-52384: WordPress Sage AI: Chatbots, OpenAI GPT-4 Bulk Articles, Dalle-3 Image Generation plugin <= 2.4.9 - Arbitrary File Upload vulnerability
Unrestricted Upload of File with Dangerous Type vulnerability in wpmonks Sage AI: Chatbots, OpenAI GPT-4 Bulk Articles, Dalle-3 Image Generation ai-content-generator allows Upload a Web Shell to a Web Server.This issue affects Sage AI: Chatbots, OpenAI GPT-4 Bulk Articles, Dalle-3 Image Generation: from n/a through <= 2.4.9.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-52384?
CVE-2024-52384 is classified as a high-severity vulnerability due to the risk of unauthenticated file uploads that could lead to remote code execution.
How do I fix CVE-2024-52384?
To fix CVE-2024-52384, update Sage AI: Chatbots, OpenAI GPT-4 Bulk Articles, Dalle-3 Image Generation to version 2.4.10 or later.
What types of files can be uploaded in CVE-2024-52384?
CVE-2024-52384 allows for the unrestricted upload of files, including potentially dangerous types like web shells.
Which software versions are affected by CVE-2024-52384?
CVE-2024-52384 affects Sage AI: Chatbots, OpenAI GPT-4 Bulk Articles, Dalle-3 Image Generation versions up to 2.4.9.
What are the potential impacts of CVE-2024-52384?
The potential impacts of CVE-2024-52384 include unauthorized access to the web server and the ability to execute malicious code.