Security Advisory

CVE-2024-50625

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-12-09 00:00:00
Last updated 2024-12-11 20:52:29
Assigner mitre
State PUBLISHED

Description

An issue was discovered in Digi ConnectPort LTS before 1.4.12. A vulnerability in the file upload handling of a web application allows manipulation of file paths via POST requests. This can lead to arbitrary file uploads within specific directories, potentially enabling privilege escalation when combined with other vulnerabilities.