An issue was discovered in GNU Savane v.3.13 and before, allows a remote attacker to execute arbitrary code and escalate privileges via a crafted file to the upload.php component.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-04-11 06:15
Updated : 2024-11-21 09:08
NVD link : CVE-2024-29399
Mitre link : CVE-2024-29399
CVE.ORG link : CVE-2024-29399
JSON object : View
Products Affected
No product.
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')