cve/2024/CVE-2024-24399.md
2024-05-25 21:48:12 +02:00

754 B

CVE-2024-24399

Description

An arbitrary file upload vulnerability in LEPTON v7.0.0 allows authenticated attackers to execute arbitrary PHP code by uploading this code to the backend/languages/index.php languages area.

POC

Reference

Github