{ "id": "CVE-2024-24520", "sourceIdentifier": "cve@mitre.org", "published": "2024-03-21T02:52:10.787", "lastModified": "2024-03-21T12:58:51.093", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "An issue in Lepton CMS v.7.0.0 allows a local attacker to execute arbitrary code via the upgrade.php file in the languages place." }, { "lang": "es", "value": "Un problema en Lepton CMS v.7.0.0 permite a un atacante local ejecutar c\u00f3digo arbitrario a trav\u00e9s del archivo update.php en el lugar del idioma." } ], "metrics": {}, "references": [ { "url": "http://lepton.com", "source": "cve@mitre.org" }, { "url": "https://github.com/xF9979/LEPTON-CMS", "source": "cve@mitre.org" } ] }