CVE-2024-50623
CVE Published | 2024-10-28 |
---|---|
Related CWE(s) | CWE-434: Unrestricted Upload of File with Dangerous Type |
Exploitation Reported (CISA KEV) | 2024-12-13 |
CVSS 3 Base Score | 9.8 (CRITICAL) |
CVSS 3 Attack Complexity | LOW |
CVSS 3 Attack Vector | NETWORK |
In Cleo Harmony before 5.8.0.21, VLTrader before 5.8.0.21, and LexiCom before 5.8.0.21, there is an unrestricted file upload and download that could lead to remote code execution.
Cyber Threat Graph Context
Explore how this CVE relates to the wider threat graph