Security Advisory

CVE-2024-34191

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-05-14 15:31:00
Last updated 2025-02-13 15:53:02
Assigner mitre
State PUBLISHED

Description

htmly v2.9.6 was discovered to contain an arbitrary file deletion vulnerability via the delete_post() function at admin.php. This vulnerability allows attackers to delete arbitrary files via a crafted request.