Back

CRITICAL

Unrestricted Upload of File with Dangerous Type vulnerability on Scriptcase

Published Sep 24, 2024

Description

Vulnerability in the Scriptcase application version 9.4.019, which involves the arbitrary upload of a file via /scriptcase/devel/lib/third/jquery_plugin/jQuery-File-Upload/server/php/ via a POST request. An attacker could upload malicious files to the server due to the application not properly verifying user input.

Affected products

Remediation

Vendor solution

The vulnerability has been fixed in the latest version.

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner INCIBE
Published Sep 24, 2024
Updated Sep 24, 2024
Reserved Sep 17, 2024
CISA Vulnrichment
Updated Sep 24, 2024
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a