PT-2024-22370 · Ibos · Ibos

A7Cc

·

Published

2024-11-01

·

Updated

2025-07-11

·

CVE-2024-28265

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBOS version 4.5.5
Description The issue is related to an arbitrary file deletion vulnerability. It affects the LoginController.php file located at systemmodulesdashboardcontrollers. There is no information about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited.
Recommendations For IBOS version 4.5.5, patch immediately and monitor for suspicious activity. Restrict local network access if needed.

Exploit

Fix

Weakness Enumeration

Related Identifiers

CVE-2024-28265

Affected Products

Ibos