CVE-2024-25274
20.02.2024, 16:15
An arbitrary file upload vulnerability in the component /sysFile/upload of Novel-Plus v4.3.0-RC1 allows attackers to execute arbitrary code via uploading a crafted file.Enginsight
Vendor | Product | Version |
---|---|---|
xxyopen | novel-plus | 4.3.0:rc1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration