CVE-2024-8525 Information
Nov 23, 2024
cve
Description
An unrestricted upload of file with dangerous type in Automated Logic WebCTRL 7.0 could allow an unauthenticated user to perform remote command execution via a crafted HTTP POST request which could lead to uploading a malicious file.
Reference
https://www.cisa.gov/news-events/ics-advisories/ https://www.corporate.carrier.com/product-security/advisories-resources/
Share on: