Zurück zur CVE-Übersicht
CVE-2024-24520
HIGH(7.8)CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Risk Signal Score20/100 — NIEDRIG
- CVSS 7.8 — Hoch
EPSS-Score
0%
Exploit-Wahrscheinlichkeit (30 Tage)
CVSS Score
7.8
Technische Schwere
Beschreibung
An issue in Lepton CMS v.7.0.0 allows a local attacker to execute arbitrary code via the upgrade.php file in the languages place.
Referenzen
- https://github.com/capture0x/leptoncms
- https://github.com/xF9979/LEPTON-CMS
- https://packetstormsecurity.com/files/176647/Lepton-CMS-7.0.0-Remote-Code-Execut...
- https://www.exploit-db.com/exploits/51949
- http://lepton.com
- https://github.com/capture0x/leptoncms
- https://github.com/xF9979/LEPTON-CMS
- https://packetstormsecurity.com/files/176647/Lepton-CMS-7.0.0-Remote-Code-Execut...
- https://www.exploit-db.com/exploits/51949