PT-2024-24552 · Inducer · Inducer

Kai6U

·

Published

2024-04-22

·

Updated

2025-06-13

·

CVE-2024-32407

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions inducer versions prior to 2024.1
Description The issue allows a remote attacker to execute arbitrary code via a crafted payload to the Page Sandbox feature.
Recommendations For versions prior to 2024.1, update to version 2024.1 or later to resolve the issue.

Exploit

Fix

SSRF

Weakness Enumeration

Related Identifiers

CVE-2024-32407

Affected Products

Inducer