CVE-2024-57189
EUVD-2024-5466310.06.2025, 17:20
In Erxes <1.6.2, an authenticated attacker can write to arbitrary files on the system using a Path Traversal vulnerability in the importHistoriesCreate GraphQL mutation handler.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| erxes | erxes | 𝑥 < 1.6.2 |
𝑥
= Vulnerable software versions