CVE-2024-38909
30.07.2024, 14:15
Studio 42 elFinder 2.1.64 is vulnerable to Incorrect Access Control. Copying files with an unauthorized extension between server directories allows an arbitrary attacker to expose secrets, perform RCE, etc.Enginsight
Vendor | Product | Version |
---|---|---|
std42 | elfinder | 2.1.64 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration