PT-2024-27734 · Machform · Machform

Atreb92

·

Published

2024-07-01

·

Updated

2024-07-09

·

CVE-2024-37762

CVSS v3.1

9.9

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MachForm versions up to 21
Description The issue is related to an authenticated unrestricted file upload, which can lead to remote code execution.
Recommendations For versions up to 21, update to a version that includes a fix for this issue, as the current version allows for unrestricted file uploads that can be exploited for remote code execution.

Exploit

Fix

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-37762

Affected Products

Machform