First published: Mon Oct 14 2024(Updated: )
The fix for CVE-2024-26261 was incomplete, and and the specific package for OAKlouds from Hgiga remains at risk. Unauthenticated remote attackers still can download arbitrary system files, which may be deleted subsequently .
Credit: twcert@cert.org.tw
Update OAKlouds-webbase-2.0 to version 1162 or later. Update OAKlouds-webbase-3.0 to version 1162 or later.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.