CVE-2024-24350

Severity CVSS v4.0:
Pending analysis
Type:
CWE-434 Unrestricted Upload of File with Dangerous Type
Publication date:
08/02/2024
Last modified:
08/05/2025

Description

File Upload vulnerability in Software Publico e-Sic Livre v.2.0 and before allows a remote attacker to execute arbitrary code via the extension filtering component.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:softwarepublico:e-sic_livre:*:*:*:*:*:*:*:* 2.0 (including)