CVE-2024-46540
EUVD-2024-4186830.09.2024, 17:15
A remote code execution (RCE) vulnerability in the component /admin/store.php of Emlog Pro before v2.3.15 allows attackers to use remote file downloads and self-extract fucntions to upload webshells to the target server, thereby obtaining system privileges.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| emlog | emlog | 𝑥 < 2.3.15 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| emlog_pro_project | emlog_pro | 𝑥 < 2.3.15 | ADP |
Common Weakness Enumeration