PT-2024-35938 · Genetech · Pie Register Premium

Ananda Dhakal

·

Published

2024-12-09

·

Updated

2024-12-14

·

CVE-2024-53822

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Pie Register Premium versions prior to 3.8.3.3
Description: The issue is related to an Unrestricted Upload of File with Dangerous Type, which affects the Genetech Pie Register Premium. This allows for the upload of files with potentially dangerous types, posing a security risk.
Recommendations: For versions prior to 3.8.3.3, update to version 3.8.3.3 or later to resolve the issue. As a temporary workaround, consider restricting file uploads to only necessary and safe file types until the update is applied.

Fix

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

CVE-2024-53822

Affected Products

Pie Register Premium