A vulnerability, which was classified as critical, was found in Campcodes Legal Case Management System 1.0. Affected is an unknown function of the file /admin/general-setting of the component Setting Handler. The manipulation of the argument favicon/logo leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-263622 is the identifier assigned to this vulnerability.
History

Thu, 20 Feb 2025 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Campcodes
Campcodes legal Case Management System
CPEs cpe:2.3:a:campcodes:legal_case_management_system:1.0:*:*:*:*:*:*:*
Vendors & Products Campcodes
Campcodes legal Case Management System

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2024-08-01T20:47:41.529Z

Reserved: 2024-05-09T08:45:42.975Z

Link: CVE-2024-4681

cve-icon Vulnrichment

Updated: 2024-08-01T20:47:41.529Z

cve-icon NVD

Status : Analyzed

Published: 2024-05-14T15:44:20.167

Modified: 2025-02-20T20:12:02.653

Link: CVE-2024-4681

cve-icon Redhat

No data.