{ "id": "CVE-2024-25859", "sourceIdentifier": "cve@mitre.org", "published": "2024-02-28T20:15:41.900", "lastModified": "2024-02-29T13:49:47.277", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "A path traversal vulnerability in the /path/to/uploads/ directory of Blesta before v5.9.2 allows attackers to takeover user accounts and execute arbitrary code." }, { "lang": "es", "value": "Una vulnerabilidad de path traversal en el directorio /path/to/uploads/ de Blesta anterior a v5.9.2 permite a los atacantes apoderarse de cuentas de usuarios y ejecutar c\u00f3digo arbitrario." } ], "metrics": {}, "references": [ { "url": "https://www.blesta.com/2024/02/08/security-advisory/", "source": "cve@mitre.org" } ] }