Hkcms · Hkcms · CVE-2024-52677
**Name of the Vulnerable Software and Affected Versions**
HkCms versions prior to 2.3.2.240702
**Description**
The issue concerns a file upload vulnerability in the getFileName method located in /app/common/library/Upload.php.
**Recommendations**
For versions prior to 2.3.2.240702, consider disabling the file upload functionality or restricting access to the /app/common/library/Upload.php module until a patch is available.