NA

CVE-2024-25674

Published: 09/02/2024 Updated: 12/02/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An issue exists in MISP prior to 2.4.184. Organisation logo upload is insecure because of a lack of checks for the file extension and MIME type.

Vulnerable Product Search on Vulmon Subscribe to Product

misp misp