CVE-2024-8525

EUVD-2024-49547
An unrestricted upload of file with dangerous type in Automated Logic WebCTRL 7.0 could allow an unauthenticated user to perform remote command execution via a crafted HTTP POST request which could lead to uploading a malicious file.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
CISA-ADPADP
UNKNOWN
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 82%
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
automatedlogicwebctrl
7.0
ADP