Security Advisory

CVE-2024-56973

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-02-14 00:00:00
Last updated 2025-02-28 17:07:34
Assigner mitre
State PUBLISHED

Description

Insecure Permissions vulnerability in Alvaria, Inc Unified IP Unified Director before v.7.2SP2 allows a remote attacker to execute arbitrary code via the source and filename parameters to the ProcessUploadFromURL.jsp component.