CVE-2024-39171

Publication date

2024-07-09 00:00:00

Family

mitre

State

PUBLISHED

Description

Directory Travel in PHPVibe v11.0.46 due to incomplete blacklist checksums and directory checks, which can lead to code execution via writing specific statements to .htaccess and code to a file with a .png suffix.