CVE-2024-29848

An unrestricted file upload vulnerability in web component of Ivanti Avalanche before 6.4.x allows an authenticated, privileged user to execute arbitrary commands as SYSTEM.
Configurations

No configuration.

History

No history.

Information

Published : 2024-05-31 18:15

Updated : 2024-11-21 09:08


NVD link : CVE-2024-29848

Mitre link : CVE-2024-29848

CVE.ORG link : CVE-2024-29848


JSON object : View

Products Affected

No product.

CWE
CWE-434

Unrestricted Upload of File with Dangerous Type