CVE-2024-33752

Severity CVSS v4.0:
Pending analysis
Type:
CWE-434 Unrestricted Upload of File with Dangerous Type
Publication date:
06/05/2024
Last modified:
11/06/2025

Description

An arbitrary file upload vulnerability exists in emlog pro 2.3.0 and pro 2.3.2 at admin/views/plugin.php that could be exploited by a remote attacker to submit a special request to upload a malicious file to execute arbitrary code.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:emlog:emlog:2.3.0:*:*:*:pro:*:*:*
cpe:2.3:a:emlog:emlog:2.3.2:*:*:*:pro:*:*:*