CVE-2024-0864
29.02.2024, 13:15
Enabling Simple Ajax Uploader plugin included in Laragon open-source software allows for a remote code execution (RCE) attack via an improper input validation in a file_upload.php file which serves as an example. By default, Laragon is not vulnerable until a user decides to use theaforementioned plugin.Enginsight
Vendor | Product | Version |
---|---|---|
laragon | laragon | 𝑥 < 7.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration