CVE-2024-33120
EUVD-2024-3086507.05.2024, 15:15
Roothub v2.5 was discovered to contain an arbitrary file upload vulnerability via the customPath parameter in the upload() function. This vulnerability allows attackers to execute arbitrary code via a crafted JSP file.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| roothub | roothub | 2.5.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration