Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-53726 | SimpleHelp remote support software v5.5.7 and before allows admin users to upload arbitrary files anywhere on the file system by uploading a crafted zip file (i.e. zip slip). This can be exploited to execute arbitrary code on the host in the context of the SimpleHelp server user. |
Fri, 24 Apr 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| Metrics |
ssvc
|
ssvc
|
Fri, 24 Apr 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
kev
|
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 31 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-22 | |
| Metrics |
ssvc
|
Thu, 16 Jan 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Simple-help
Simple-help simplehelp |
|
| Weaknesses | CWE-59 | |
| CPEs | cpe:2.3:a:simple-help:simplehelp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Simple-help
Simple-help simplehelp |
|
| Metrics |
cvssV3_1
|
Wed, 15 Jan 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SimpleHelp remote support software v5.5.7 and before allows admin users to upload arbitrary files anywhere on the file system by uploading a crafted zip file (i.e. zip slip). This can be exploited to execute arbitrary code on the host in the context of the SimpleHelp server user. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-04-25T03:55:36.284Z
Reserved: 2025-01-09T00:00:00.000Z
Link: CVE-2024-57728
Updated: 2025-01-16T14:56:58.070Z
Status : Analyzed
Published: 2025-01-15T23:15:09.777
Modified: 2026-04-24T19:27:00.700
Link: CVE-2024-57728
No data.
OpenCVE Enrichment
No data.
EUVD