CVE Published: 12/06/2024 |
CVE Updated: 01/08/2024 |
CVE Year: 2024 Source: CERT-PL |
Vendor: Jan Syski |
Product: MegaBIP Status : PUBLISHED
CVE-2024-1659 Description
Arbitrary File Upload vulnerability in MegaBIP software allows attacker to upload any file to the server (including a PHP code file) without an authentication. This issue affects MegaBIP software versions through 5.10.