PT-2024-35212 · Arttia · Arttia Creative Datasets Manager

Stealthcopter

·

Published

2024-11-14

·

Updated

2025-03-22

·

CVE-2024-52375

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Arttia Creative Datasets Manager versions n/a through 1.5
Description The issue is related to an Unrestricted Upload of File with Dangerous Type, which affects Arttia Creative Datasets Manager. This allows for the upload of files with potentially dangerous types, posing a security risk.
Recommendations For versions n/a through 1.5, consider restricting file uploads to only allow safe file types until a patch is available. As a temporary workaround, consider disabling file upload functionality in Arttia Creative Datasets Manager until a patch is available. Restrict access to the file upload module to minimize the risk of exploitation.

Fix

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-52375

Affected Products

Arttia Creative Datasets Manager