Insecure Permissions vulnerability in Alvaria, Inc Unified IP Unified Director before v.7.2SP2 allows a remote attacker to execute arbitrary code via the source and filename parameters to the ProcessUploadFromURL.jsp component.
Metrics
Affected Vendors & Products
References
History
Tue, 04 Mar 2025 03:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 28 Feb 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-281 | |
Metrics |
cvssV3_1
|
Fri, 14 Feb 2025 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Insecure Permissions vulnerability in Alvaria, Inc Unified IP Unified Director before v.7.2SP2 allows a remote attacker to execute arbitrary code via the source and filename parameters to the ProcessUploadFromURL.jsp component. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-28T17:07:34.308Z
Reserved: 2025-01-09T00:00:00.000Z
Link: CVE-2024-56973

Updated: 2025-02-28T17:07:27.175Z

Status : Awaiting Analysis
Published: 2025-02-14T16:15:34.273
Modified: 2025-02-28T17:15:15.730
Link: CVE-2024-56973

No data.