NA

CVE-2024-24399

Published: 25/01/2024 Updated: 01/04/2024
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

An arbitrary file upload vulnerability in LEPTON v7.0.0 allows authenticated malicious users to execute arbitrary PHP code by uploading this code to the backend/languages/index.php languages area.

Vulnerable Product Search on Vulmon Subscribe to Product

lepton-cms leptoncms 7.0.0