CVE-2024-52782: Critical severity DCME DCME-320 vulnerability
DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/audit/newstatistics/monstathistnew.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-52782?
CVE-2024-52782 is classified as a critical vulnerability due to its potential for Remote Code Execution.
How do I fix CVE-2024-52782?
To fix CVE-2024-52782, upgrade your DCME software to versions above the specified vulnerable releases.
Which products are affected by CVE-2024-52782?
CVE-2024-52782 affects DCME-320 up to version 7.4.12.90, DCME-520 up to version 9.25.5.11, DCME-320-L up to version 9.3.5.26, and DCME-720 up to version 9.1.5.11.
What kind of exploitation is possible with CVE-2024-52782?
CVE-2024-52782 allows for Remote Code Execution, enabling an attacker to execute arbitrary code on the affected systems.
Is there a workaround for CVE-2024-52782 before I can update?
Currently, there are no documented workarounds for CVE-2024-52782, so immediate upgrading is recommended.