Vulnerabilities > CVE-2024-4681 - Unspecified vulnerability in Campcodes Legal Case Management System 1.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
HIGH Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
A vulnerability, which was classified as critical, was found in Campcodes Legal Case Management System 1.0. Affected is an unknown function of the file /admin/general-setting of the component Setting Handler. The manipulation of the argument favicon/logo leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-263622 is the identifier assigned to this vulnerability.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/file_upload.md
- https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/file_upload.md
- https://vuldb.com/?ctiid.263622
- https://vuldb.com/?ctiid.263622
- https://vuldb.com/?id.263622
- https://vuldb.com/?id.263622
- https://vuldb.com/?submit.331468
- https://vuldb.com/?submit.331468