← back
CVE-2024-57248

CVE-2024-57248

CVSS 6.3 MEDIUMEPSS 3.2%CWE-22
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.3EPSS 3.2%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
07 Feb 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Directory Traversal in File Upload in Gleamtech FileVista 9.2.0.0 allows remote attackers to achieve Code Execution, Information Disclosure, and Escalation of Privileges via injecting malicious payloads in HTTP requests to manipulate file paths, bypass access controls, and upload malicious files.
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Affected products
n/a · n/a

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →