CVE-2024-50625
09.12.2024, 22:15
An issue was discovered in Digi ConnectPort LTS before 1.4.12. A vulnerability in the file upload handling of a web application allows manipulation of file paths via POST requests. This can lead to arbitrary file uploads within specific directories, potentially enabling privilege escalation when combined with other vulnerabilities.Enginsight
Vendor | Product | Version |
---|---|---|
digi | connectport_lts_firmware | 𝑥 < 1.4.12 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration