Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 16 Oct 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dycms
Dycms dycms |
|
| Weaknesses | CWE-434 | |
| CPEs | cpe:2.3:a:dycms:dycms:2.0.9.41:*:*:*:*:*:*:* | |
| Vendors & Products |
Dycms
Dycms dycms |
|
| Metrics |
cvssV3_1
|
Tue, 15 Oct 2024 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | File Upload vulnerability in DYCMS Open-Source Version v2.0.9.41 allows a remote attacker to execute arbitrary code via the application only detecting the extension of image files in the front-end. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-10-16T18:42:50.833Z
Reserved: 2024-10-08T00:00:00.000Z
Link: CVE-2024-48782
Updated: 2024-10-16T18:42:41.734Z
Status : Deferred
Published: 2024-10-15T21:15:11.450
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-48782
No data.
OpenCVE Enrichment
No data.