CVE-2024-46625 Information

Description

An authenticated arbitrary file upload vulnerability in the /documentCache/upload endpoint of InfoDom Performa 365 v4.0.1 allows attackers to execute arbitrary code via uploading a crafted SVG file.

Reference

https://github.com/EchoSl0w/Research/blob/main/2024/CVE-2024-46625.md

Share on: