CVE-2024-28269 Information

Description

ReCrystallize Server 5.10.0.0 allows administrators to upload files to the server. The file upload is not restricted leading to the ability to upload of malicious files. This could result in a Remote Code Execution.

Reference

https://www.recrystallize.com/merchant/ReCrystallize-Server-for-Crysta https://sensepost.com/blog/2024/from-discovery-to-disclosure-recrystallize-server-vulnerabilities/

Share on: