Security Advisory

CVE-2024-53636

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-04-26 00:00:00
Last updated 2025-12-12 15:18:04
Assigner mitre
State PUBLISHED

Description

An arbitrary file upload vulnerability via writefile.php of Serosoft Academia Student Information System (SIS) EagleR-1.0.118 allows attackers to execute arbitrary code via ../ in the filePath parameter.